Performs static analysis of application and OSS source code in order to analyze the reachability of vulnerable Java constructs

Compile Dependencies (9)

Category/LicenseGroup / ArtifactVersionUpdates
com.github.spotbugs » spotbugs-annotations
Annotations the SpotBugs tool supports
4.5.34.10.3
JSON Lib Apache 2.0
com.google.code.gson » gson
Gson is a Java library that can be used to convert Java Objects into their JSON representation. It can also be used to ...
2.9.02.14.0
EPL 2.0
com.ibm.wala » com.ibm.wala.core
T. J. Watson Libraries for Analysis
1.4.31.8.0
EPL 2.0
com.ibm.wala » com.ibm.wala.util
T. J. Watson Libraries for Analysis
1.4.31.8.0
Bytecode EPL 2.0
com.ibm.wala » com.ibm.wala.shrike
T. J. Watson Libraries for Analysis
1.4.31.8.0
Validation Apache 2.0
javax.validation » validation-api
JavaBeans Validation (Bean Validation) is a validation model that can add constraints to the beans with annotations ...
2.0.1.Final3.1.1
Logging Apache 2.0
org.apache.logging.log4j » log4j-api
API for Apache Log4J, a highly configurable logging tool that focuses on performance and low garbage generation. It has ...
2.17.22.26.1
Logging Apache 2.0
org.apache.logging.log4j » log4j-core3 vulnerabilities
Implementation for Apache Log4J, a highly configurable logging tool that focuses on performance and low garbage ...
2.17.22.26.1
Apache 2.0
org.eclipse.steady » lang-java
Core classes for Java analysis
3.2.43.2.5