Skip to content

Comment on AISLE Discovers 38 CVEs in OpenEMR Healthcare Softwareparent

Comments

There are Static code analyzers which already would have detected that.

And these were also automatic. Looks very likely that the team didn’t give a damn about top basic security and good practices.

Like a house made of paper wouldn’t be an example of the insecurity of the construction industry.

Which static code analyzers do you recommend?

SonarQube is extremely common, but I'm sure there are many.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.