report

The State of Code: Security

Sonar’s second report in The State of Code series provides a data-driven look into the practices and pitfalls found across 7.9 billion lines of code from over 970,000 developers who trust Sonar for analysis.

Why should you avoid hard-coding credentials? What are the most common security hotspots? This report includes the most common issues impacting software quality, like log injection vulnerabilities and XSS attacks, that could cause severe consequences for applications running in production if not addressed.

Learn why these vulnerabilities are so often missed and how to eliminate them from your projects.

Download the report
  • Follow SonarSource on Twitter
  • Follow SonarSource on Linkedin
language switcher
English

© 2008-2025 SonarSource SA. All rights reserved.