Static Code Analysis Results #4075
mm-mbinder
started this conversation in
General
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Hello,
I've included this library in one of our projects, which has a SonarQube analysis active. SonarQube reported some bugs and security hotspots in the included header file. Since i don't have the capabilities or knowledge to evaluate or fix any of the issues, i thought it would be at least a good idea to report the issues here.
For context the single header release from version 3.11.2 was included/analyzed here. MSVC143 is used as compiler.
Bugs:
Line 6164 - SonarQube Description
![image](https://private-user-images.githubusercontent.com/74175538/254248157-af2fac9a-97fc-4e49-a164-b09d3b53abd1.png?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.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.Lb4f04WAXKLsEJnArKBhR26NjQdC2K9TObh5wDYBtj0)
Line 14715 - SonarQube Description
![image](https://private-user-images.githubusercontent.com/74175538/254248749-1fc9cef5-0201-46ef-ad1a-a797024fa626.png?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.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.v4v7AsI_uniM5nwtLc2nSNBjp94EKPcFnkdbAE_1mIs)
Line 18943 - SonarQube Description
![image](https://private-user-images.githubusercontent.com/74175538/254249196-312bed15-e631-41c3-869d-3b89ad790850.png?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJnaXRodWIuY29tIiwiYXVkIjoicmF3LmdpdGh1YnVzZXJjb250ZW50LmNvbSIsImtleSI6ImtleTUiLCJleHAiOjE3Mzk1MjQxNjIsIm5iZiI6MTczOTUyMzg2MiwicGF0aCI6Ii83NDE3NTUzOC8yNTQyNDkxOTYtMzEyYmVkMTUtZTYzMS00MWMzLTg2OWQtM2I4OWFkNzkwODUwLnBuZz9YLUFtei1BbGdvcml0aG09QVdTNC1ITUFDLVNIQTI1NiZYLUFtei1DcmVkZW50aWFsPUFLSUFWQ09EWUxTQTUzUFFLNFpBJTJGMjAyNTAyMTQlMkZ1cy1lYXN0LTElMkZzMyUyRmF3czRfcmVxdWVzdCZYLUFtei1EYXRlPTIwMjUwMjE0VDA5MDQyMlomWC1BbXotRXhwaXJlcz0zMDAmWC1BbXotU2lnbmF0dXJlPWM5N2RkYzU2YTM0YjY2ZTJlMGFlZDlhMDE3NmViNjQyODFjMzExOGY1NjEwY2M1MWQ1ZGM5NjE5ZjU4NDk3YzcmWC1BbXotU2lnbmVkSGVhZGVycz1ob3N0In0.WB2MdAyfBq2M7UWxvq0MPHKcZPCDNwwLDOoQKF06Sro)
Line 18958 - SonarQube Description
![image](https://private-user-images.githubusercontent.com/74175538/254249682-20dffa09-bd1c-406d-a915-cfa861630b21.png?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJnaXRodWIuY29tIiwiYXVkIjoicmF3LmdpdGh1YnVzZXJjb250ZW50LmNvbSIsImtleSI6ImtleTUiLCJleHAiOjE3Mzk1MjQxNjIsIm5iZiI6MTczOTUyMzg2MiwicGF0aCI6Ii83NDE3NTUzOC8yNTQyNDk2ODItMjBkZmZhMDktYmQxYy00MDZkLWE5MTUtY2ZhODYxNjMwYjIxLnBuZz9YLUFtei1BbGdvcml0aG09QVdTNC1ITUFDLVNIQTI1NiZYLUFtei1DcmVkZW50aWFsPUFLSUFWQ09EWUxTQTUzUFFLNFpBJTJGMjAyNTAyMTQlMkZ1cy1lYXN0LTElMkZzMyUyRmF3czRfcmVxdWVzdCZYLUFtei1EYXRlPTIwMjUwMjE0VDA5MDQyMlomWC1BbXotRXhwaXJlcz0zMDAmWC1BbXotU2lnbmF0dXJlPTJiMmVjOWVmYzUwNDc1YzYyMzE3MTdmMWVhOGE3YWZkNmQzZTljNDM1NGMzZmUzZWUxMjNjOGFmMmY3MzBkODEmWC1BbXotU2lnbmVkSGVhZGVycz1ob3N0In0.8AbqkgYgBhhmHEyWF5hREtTxcXDLLf5lFCNE3QyQDjU)
Line 20003 - SonarQube Description
![image](https://private-user-images.githubusercontent.com/74175538/254249854-ae555c8d-a80e-4a8f-9f00-8a14e7cc0d5a.png?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJnaXRodWIuY29tIiwiYXVkIjoicmF3LmdpdGh1YnVzZXJjb250ZW50LmNvbSIsImtleSI6ImtleTUiLCJleHAiOjE3Mzk1MjQxNjIsIm5iZiI6MTczOTUyMzg2MiwicGF0aCI6Ii83NDE3NTUzOC8yNTQyNDk4NTQtYWU1NTVjOGQtYTgwZS00YThmLTlmMDAtOGExNGU3Y2MwZDVhLnBuZz9YLUFtei1BbGdvcml0aG09QVdTNC1ITUFDLVNIQTI1NiZYLUFtei1DcmVkZW50aWFsPUFLSUFWQ09EWUxTQTUzUFFLNFpBJTJGMjAyNTAyMTQlMkZ1cy1lYXN0LTElMkZzMyUyRmF3czRfcmVxdWVzdCZYLUFtei1EYXRlPTIwMjUwMjE0VDA5MDQyMlomWC1BbXotRXhwaXJlcz0zMDAmWC1BbXotU2lnbmF0dXJlPWZmM2Q4MGEwNjZkYmU0ZGE5NDY3MDJhYTgwZDI3ODYzOTc5NmM4MjYzZGRhZmEzYzY5ZGViMTU0M2RlYjI1Y2QmWC1BbXotU2lnbmVkSGVhZGVycz1ob3N0In0.98bJDDBoCY9zvkFOLf_8w9_YA78XxR6XuCYBdyLuY7I)
Line 20421 and Line 19742 - SonarQube Description
![image](https://private-user-images.githubusercontent.com/74175538/254250989-26702f56-2d6b-43e5-b695-cf93564a15ca.png?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.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.mdk1d4OkWOjF6jTmIC2lCoOH7SAL4fYX6vuRu0jim4M)
![image](https://private-user-images.githubusercontent.com/74175538/254250362-3dfcf556-ba13-45cd-9ae0-da901fd6c3ba.png?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.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.c6WnPJ6-b7gLfqagCkZz76VBYasxDg479aquKUzPqiQ)
Security Hotspots:
Line 4183 - SonarQube Description
![image](https://private-user-images.githubusercontent.com/74175538/254251211-bf01bd86-4d28-47df-ae52-0a7b84326409.png?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.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.SeUbBojpYQccqJnEH5MK3rbYxaotnKRp9e75eht3Shs)
Line 6520 - SonarQube Description
![image](https://private-user-images.githubusercontent.com/74175538/254251385-d1527183-f0ed-48ba-a81f-115d4c9adbc8.png?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.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.rH0AFDJSs90yqdN8V3zXTUxUC6g-mJgZHJiKBGue4r0)
Beta Was this translation helpful? Give feedback.
All reactions