CodeCheck Documentation
CodeCheck Documentation - MITRE CWE Top 25

Standard: MITRE CWE Top 25

Check IDCheck NameSupported
CWE-77Improper Neutralization of Special Elements used in a Command ('Command Injection')Yes
CWE-78Improper Neutralization of Special Elements used in an OS Command ('Command Injection')Yes
CWE-94Improper Control of Generation of Code ('Code Injection')(Partial)Yes
CWE-119AImproper Restriction of Operations within the Bounds of a Memory Buffer(Part A: Read)Yes
CWE-119BImproper Restriction of Operations within the Bounds of a Memory Buffer(Part B: Write)Yes
CWE-125Out-of-bounds ReadYes
CWE-190Integer Overflow or WraparoundYes
CWE-306Missing Authentication for Critical Function (Partial)Yes
CWE-362Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')(Partial)Yes
CWE-476NULL Pointer DereferenceYes
CWE-502Deserialization of Untrusted Data (Partial)Yes
CWE-787Out-of-bounds WriteYes
CWE-798Use of Hard-coded Credentials (Partial)Yes