@@ -8,16 +8,20 @@ Java framework & library support
8
8
9
9
Framework / library,Package,Flow sources,Taint & value steps,Sinks (total),`CWE‑022` :sub: `Path injection`,`CWE‑036` :sub: `Path traversal`,`CWE‑079` :sub: `Cross-site scripting`,`CWE‑089` :sub: `SQL injection`,`CWE‑090` :sub: `LDAP injection`,`CWE‑094` :sub: `Code injection`,`CWE‑319` :sub: `Cleartext transmission`
10
10
Android,``android.*``,52,479,116,,,3,67,,,
11
+ Android extensions,``androidx.*``,5,183,8,,,,,,,
11
12
`Apache Commons Collections <https://commons.apache.org/proper/commons-collections/ >`_,"``org.apache.commons.collections ``, ``org.apache.commons.collections4 ``",,1600,,,,,,,,
12
13
`Apache Commons IO <https://commons.apache.org/proper/commons-io/ >`_,``org.apache.commons.io``,,556,106,91,,,,,,15
13
14
`Apache Commons Lang <https://commons.apache.org/proper/commons-lang/ >`_,``org.apache.commons.lang3``,,424,,,,,,,,
14
15
`Apache Commons Text <https://commons.apache.org/proper/commons-text/ >`_,``org.apache.commons.text``,,272,,,,,,,,
15
16
`Apache HttpComponents <https://hc.apache.org/ >`_,"``org.apache.hc.core5.* ``, ``org.apache.http ``",5,136,28,,,3,,,,25
17
+ `Apache Log4j 2 <https://logging.apache.org/log4j/2.0/ >`_,``org.apache.logging.log4j``,,8,359,,,,,,,
16
18
`Google Guava <https://guava.dev/ >`_,``com.google.common.*``,,728,39,,6,,,,,
19
+ JBoss Logging,``org.jboss.logging``,,,324,,,,,,,
17
20
`JSON-java <https://github.com/stleary/JSON-java >`_,``org.json``,,236,,,,,,,,
18
21
Java Standard Library,``java.*``,3,589,130,28,,,7,,,10
19
22
Java extensions,"``javax.* ``, ``jakarta.* ``",63,609,32,,,4,,1,1,2
23
+ Kotlin Standard Library,``kotlin*``,,1835,12,10,,,,,,2
20
24
`Spring <https://spring.io/ >`_,``org.springframework.*``,29,477,101,,,,19,14,,29
21
- Others,"``androidx.core.app``, ``androidx.slice``, ``cn.hutool.core.codec``, ``com.esotericsoftware.kryo.io``, ``com.esotericsoftware.kryo5.io``, ``com.fasterxml.jackson.core``, ``com.fasterxml.jackson.databind``, ``com.hubspot.jinjava``, ``com.mitchellbosecke.pebble``, ``com.opensymphony.xwork2.ognl``, ``com.rabbitmq.client``, ``com.unboundid.ldap.sdk``, ``com.zaxxer.hikari``, ``flexjson``, ``freemarker.cache``, ``freemarker.template``, ``groovy.lang``, ``groovy.util``, ``jodd.json``, ``kotlin``, ``net.sf.saxon.s9api``, ``ognl``, ``okhttp3``, ``org.apache.commons.codec``, ``org.apache.commons.jexl2``, ``org.apache.commons.jexl3``, ``org.apache.commons.logging``, ``org.apache.commons.ognl``, ``org.apache.directory.ldap.client.api``, ``org.apache.ibatis.jdbc``, ``org.apache.log4j``, ``org.apache.logging.log4j``, ``org.apache.shiro.codec``, ``org.apache.shiro.jndi``, ``org.apache.velocity.app``, ``org.apache.velocity.runtime``, ``org.codehaus.groovy.control``, ``org.dom4j``, ``org.hibernate``, ``org.jboss.logging``, ``org.jdbi.v3.core``, ``org.jooq``, ``org.mvel2``, ``org.scijava.log``, ``org.slf4j``, ``org.thymeleaf``, ``org.xml.sax``, ``org.xmlpull.v1``, ``play.mvc``, ``ratpack.core.form``, ``ratpack.core.handling``, ``ratpack.core.http``, ``ratpack.exec``, ``ratpack.form``, ``ratpack.func``, ``ratpack.handling``, ``ratpack.http``, ``ratpack.util``, ``retrofit2``",65,2326,972,10,,,14,18,,5
25
+ Others,"``cn.hutool.core.codec``, ``com.esotericsoftware.kryo.io``, ``com.esotericsoftware.kryo5.io``, ``com.fasterxml.jackson.core``, ``com.fasterxml.jackson.databind``, ``com.hubspot.jinjava``, ``com.mitchellbosecke.pebble``, ``com.opensymphony.xwork2.ognl``, ``com.rabbitmq.client``, ``com.unboundid.ldap.sdk``, ``com.zaxxer.hikari``, ``flexjson``, ``freemarker.cache``, ``freemarker.template``, ``groovy.lang``, ``groovy.util``, ``jodd.json``, ``net.sf.saxon.s9api``, ``ognl``, ``okhttp3``, ``org.apache.commons.codec``, ``org.apache.commons.jexl2``, ``org.apache.commons.jexl3``, ``org.apache.commons.logging``, ``org.apache.commons.ognl``, ``org.apache.directory.ldap.client.api``, ``org.apache.ibatis.jdbc``, ``org.apache.log4j``, ``org.apache.shiro.codec``, ``org.apache.shiro.jndi``, ``org.apache.velocity.app``, ``org.apache.velocity.runtime``, ``org.codehaus.groovy.control``, ``org.dom4j``, ``org.hibernate``, ``org.jdbi.v3.core``, ``org.jooq``, ``org.mvel2``, ``org.scijava.log``, ``org.slf4j``, ``org.thymeleaf``, ``org.xml.sax``, ``org.xmlpull.v1``, ``play.mvc``, ``ratpack.core.form``, ``ratpack.core.handling``, ``ratpack.core.http``, ``ratpack.exec``, ``ratpack.form``, ``ratpack.func``, ``ratpack.handling``, ``ratpack.http``, ``ratpack.util``, ``retrofit2``",60,300,269,,,,14,18,,3
22
26
Totals,,217,8432,1524,129,6,10,107,33,1,86
23
27
0 commit comments