Coverity Scan: webgoat-study

Project Name webgoat-study
Lines of code analyzed 88,969
On Coverity Scan since Sep 16, 2015
Last build analyzed a while ago
Language Java
Repository URL webgoat-study
Homepage URL N/A
License N/A

Want to view defects or help fix defects?

 Add me to project

Analysis Metrics

Version: 6.0.1

Sep 16, 2015
Last Analyzed
Lines of Code Analyzed
Defect Density

Defects by status for current build

Total defects

Note: Defect density is measured by the number of defects per 1,000 lines of code.

Analysis Metrics per Components

Component Name Pattern Ignore Line of Code Defect density
source .*/src/.* No 25,069 14.56
Other .* No 63,900 0.16

CWE Top 25 defects

ID CWE-Name Number of Defects
22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') 4
78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') 2
79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') 8
89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') 22
327 Use of a Broken or Risky Cryptographic Algorithm 2
352 Cross-Site Request Forgery (CSRF) 15
798 Use of Hard-coded Credentials 1



About Coverity Scan Static Analysis

Find and fix defects in your C/C++, Java, JavaScript or C# open source project for free.

Coverity Scan tests every line of code and potential execution path. The root cause of each defect is clearly explained, making it easy to fix bugs.

Would you like to view the project defects, or help improve its quality by fixing defects?

 Add me to project