Veracode provides automated static and dynamic application security testing software and remediation services
Questions tagged [veracode]
321 questions
-1
votes
2 answers
Use of Hard-coded Password [CWE - 259]
While checking my veracode issue, i found this CWE 259 Use of Hard-coded Password in one of my class file. while checking that file, the 1st line of the file is responsible to this vulnerability, which is my package name. Can any one tell me why…

Venkat
- 35
- 3
- 7
-1
votes
3 answers
Do I need permission from Azure to run a Veracode Dynamic Scan?
I'm looking to run Veracode's Dynamic Scan, which is a sort of automated pen tester, on an Azure App Service that is hosting our website. There is a clause in the terms https://security-forms.azure.com/penetration-testing/terms that states "Pentest…

Joey LaMartina
- 61
- 1
- 4
-1
votes
2 answers
upload an artifacts from nexus to veracode for codescanning
I have a binary artifacts available into Release repository in Nexus. we need to upload those artifacts from Nexus to Veracode for static code analysis.
So, what's the best (or any reasonable) way to upload build artifacts to a Veracode from Nexus…

Ankur1825
- 51
- 6
-3
votes
1 answer
How to extract only numbers inside of double quotes with regex
useragent "VeracodeJenkinsPlugin/18.11.5.8 (Jenkins/2.150.3; Java/1.8.0_181)"
16:02:43.582 [19.07.18 14:02:43]
16:02:43.582 [19.07.18 14:02:43] Application profile "Cleared Derivatives Solution" (appid=74386) was located.
16:02:43.582 [19.07.18…

Dejan Bodiroga
- 143
- 2
- 12
-3
votes
1 answer
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
After R&D I didn't get solution for this flaw. Please guide me in solving this flaw
Description
This database query contains a SQL injection flaw. The function call constructs a dynamic SQL query using a variable derived from user-supplied input. An…

Kiran SK
- 9
- 1
- 2
- 6
-5
votes
1 answer
What are some really good and practical alternatives for Veracode
I am relatively new and unfamiliar with the concept of SCA and vulnerability scans and I've just heard about Veracode and want to venture into more options that are available which share some ( or have some additional functionality ) to…

Avinav gupta
- 67
- 2
- 10