@@ -8,16 +8,20 @@ Java framework & library support
88
99 Framework / library,Package,Flow sources,Taint & value steps,Sinks (total),`CWE‑022` :sub: `Path injection`,`CWE‑036` :sub: `Path traversal`,`CWE‑079` :sub: `Cross-site scripting`,`CWE‑089` :sub: `SQL injection`,`CWE‑090` :sub: `LDAP injection`,`CWE‑094` :sub: `Code injection`,`CWE‑319` :sub: `Cleartext transmission`
1010 Android,``android.*``,52,479,116,,,3,67,,,
11+ Android extensions,``androidx.*``,5,183,8,,,,,,,
1112 `Apache Commons Collections <https://commons.apache.org/proper/commons-collections/ >`_,"``org.apache.commons.collections ``, ``org.apache.commons.collections4 ``",,1600,,,,,,,,
1213 `Apache Commons IO <https://commons.apache.org/proper/commons-io/ >`_,``org.apache.commons.io``,,556,106,91,,,,,,15
1314 `Apache Commons Lang <https://commons.apache.org/proper/commons-lang/ >`_,``org.apache.commons.lang3``,,424,,,,,,,,
1415 `Apache Commons Text <https://commons.apache.org/proper/commons-text/ >`_,``org.apache.commons.text``,,272,,,,,,,,
1516 `Apache HttpComponents <https://hc.apache.org/ >`_,"``org.apache.hc.core5.* ``, ``org.apache.http ``",5,136,28,,,3,,,,25
17+ `Apache Log4j 2 <https://logging.apache.org/log4j/2.0/ >`_,``org.apache.logging.log4j``,,8,359,,,,,,,
1618 `Google Guava <https://guava.dev/ >`_,``com.google.common.*``,,728,39,,6,,,,,
19+ JBoss Logging,``org.jboss.logging``,,,324,,,,,,,
1720 `JSON-java <https://github.com/stleary/JSON-java >`_,``org.json``,,236,,,,,,,,
1821 Java Standard Library,``java.*``,3,589,130,28,,,7,,,10
1922 Java extensions,"``javax.* ``, ``jakarta.* ``",63,609,32,,,4,,1,1,2
23+ Kotlin Standard Library,``kotlin*``,,1835,12,10,,,,,,2
2024 `Spring <https://spring.io/ >`_,``org.springframework.*``,29,477,101,,,,19,14,,29
21- Others,"``androidx.core.app``, ``androidx.slice``, ``cn.hutool.core.codec``, ``com.esotericsoftware.kryo.io``, ``com.esotericsoftware.kryo5.io``, ``com.fasterxml.jackson.core``, ``com.fasterxml.jackson.databind``, ``com.hubspot.jinjava``, ``com.mitchellbosecke.pebble``, ``com.opensymphony.xwork2.ognl``, ``com.rabbitmq.client``, ``com.unboundid.ldap.sdk``, ``com.zaxxer.hikari``, ``flexjson``, ``freemarker.cache``, ``freemarker.template``, ``groovy.lang``, ``groovy.util``, ``jodd.json``, ``kotlin``, ``net.sf.saxon.s9api``, ``ognl``, ``okhttp3``, ``org.apache.commons.codec``, ``org.apache.commons.jexl2``, ``org.apache.commons.jexl3``, ``org.apache.commons.logging``, ``org.apache.commons.ognl``, ``org.apache.directory.ldap.client.api``, ``org.apache.ibatis.jdbc``, ``org.apache.log4j``, ``org.apache.logging.log4j``, ``org.apache.shiro.codec``, ``org.apache.shiro.jndi``, ``org.apache.velocity.app``, ``org.apache.velocity.runtime``, ``org.codehaus.groovy.control``, ``org.dom4j``, ``org.hibernate``, ``org.jboss.logging``, ``org.jdbi.v3.core``, ``org.jooq``, ``org.mvel2``, ``org.scijava.log``, ``org.slf4j``, ``org.thymeleaf``, ``org.xml.sax``, ``org.xmlpull.v1``, ``play.mvc``, ``ratpack.core.form``, ``ratpack.core.handling``, ``ratpack.core.http``, ``ratpack.exec``, ``ratpack.form``, ``ratpack.func``, ``ratpack.handling``, ``ratpack.http``, ``ratpack.util``, ``retrofit2``",65,2326,972,10,,,14,18,,5
25+ Others,"``cn.hutool.core.codec``, ``com.esotericsoftware.kryo.io``, ``com.esotericsoftware.kryo5.io``, ``com.fasterxml.jackson.core``, ``com.fasterxml.jackson.databind``, ``com.hubspot.jinjava``, ``com.mitchellbosecke.pebble``, ``com.opensymphony.xwork2.ognl``, ``com.rabbitmq.client``, ``com.unboundid.ldap.sdk``, ``com.zaxxer.hikari``, ``flexjson``, ``freemarker.cache``, ``freemarker.template``, ``groovy.lang``, ``groovy.util``, ``jodd.json``, ``net.sf.saxon.s9api``, ``ognl``, ``okhttp3``, ``org.apache.commons.codec``, ``org.apache.commons.jexl2``, ``org.apache.commons.jexl3``, ``org.apache.commons.logging``, ``org.apache.commons.ognl``, ``org.apache.directory.ldap.client.api``, ``org.apache.ibatis.jdbc``, ``org.apache.log4j``, ``org.apache.shiro.codec``, ``org.apache.shiro.jndi``, ``org.apache.velocity.app``, ``org.apache.velocity.runtime``, ``org.codehaus.groovy.control``, ``org.dom4j``, ``org.hibernate``, ``org.jdbi.v3.core``, ``org.jooq``, ``org.mvel2``, ``org.scijava.log``, ``org.slf4j``, ``org.thymeleaf``, ``org.xml.sax``, ``org.xmlpull.v1``, ``play.mvc``, ``ratpack.core.form``, ``ratpack.core.handling``, ``ratpack.core.http``, ``ratpack.exec``, ``ratpack.form``, ``ratpack.func``, ``ratpack.handling``, ``ratpack.http``, ``ratpack.util``, ``retrofit2``",60,300,269,,,,14,18,,3
2226 Totals,,217,8432,1524,129,6,10,107,33,1,86
2327
0 commit comments