Featured Post
Uncovering hidden security vulnerabilities with deeper SAST
Security vulnerabilities can be hidden in your third-party dependency code. Uncover them with deeper SAST.
Read more -->
Blog
Featured Post
Security vulnerabilities can be hidden in your third-party dependency code. Uncover them with deeper SAST.
Read more -->Reflections from DevNexus, the largest Java conference in the U.S.A.
Read Blog post >
Latest Python developments. Interview with Python developers from Sonar.
Read Blog post >
What do we need content types for anyway? Let's look into how an incorrect content type led to a real-world vulnerability in Odoo, CVE-2023-1434.
Read article >
Why should I learn Python language? When should I use Python? Is tooling around Python development mature?
Read Blog post >
Sonar ❤️ Compiler Explorer: Write clean C++ code inside your browser
Read Blog post >
We recently discovered two vulnerabilities in pretalx and found a generic technique to gain code execution from a file write.
Read article >
SonarQube 9.9 LTS is here! We're back with another 9 reasons you should prioritise upgrading as soon as possible.
Read article >
When bad code gets overlooked, it can create lasting problems and ultimately impact developer productivity and velocity.
Read Blog post >
Learn what features - like faster first analysis and better user management with SCIM - are available to you and your teams in SonarQube 10.0!
Read article >
Our researchers discovered a vulnerability in LibreNMS, which could be exploited by attackers to gain RCE by sending a single SNMP trap.
Read article >
Clean Code from Sonar aims to streamline your DevOps workflow so that your organization can yield the best possible results from your software.
Read Blog post >
Companies are adopting cloud native practices because it puts their core business first and affords them speed and efficiency advantages over the competition. However, reaping these rewards requires a solid, sustainable foundation - a Clean Code foundation.
Read Blog post >