Tomcat 5.5.9 High Priority
#Category Warning Package/Class Method
1MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.authenticator.SingleSignOn
2MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.connector.Connector
3STYLEDLS_DEAD_LOCAL_STOREorg.apache.catalina.connector.RequestsetCharacterEncoding
4MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.connector.Request
5MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.connector.Request
6MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.connector.Request
7MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.connector.RequestFacade
8MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.connector.Response
9MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.connector.ResponseFacade
10STYLEDLS_DEAD_LOCAL_STOREorg.apache.catalina.core.ApplicationFilterConfigsetFilterDef
11BAD_PRACTICESE_NO_SERIALVERSIONIDorg.apache.catalina.core.ApplicationFilterConfig
12MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.core.ContainerBase
13MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.core.NamingContextListener
14MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextaddApplicationListener
15MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextaddApplicationParameter
16MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextaddConstraint
17MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextaddFilterMap
18MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextaddInstanceListener
19MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextaddSecurityRole
20MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextaddWatchedResource
21MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextaddWelcomeFile
22MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextaddWrapperLifecycle
23MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextaddWrapperListener
24MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextremoveApplicationListener
25MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextremoveApplicationParameter
26MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextremoveConstraint
27MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextremoveFilterMap
28MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextremoveInstanceListener
29MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextremoveSecurityRole
30MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextremoveWatchedResource
31MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextremoveWelcomeFile
32MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextremoveWrapperLifecycle
33MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardContextremoveWrapperListener
34MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.core.StandardContext
35BAD_PRACTICESE_BAD_FIELDorg.apache.catalina.core.StandardContext
36BAD_PRACTICESE_BAD_FIELDorg.apache.catalina.core.StandardContext
37BAD_PRACTICESE_NO_SERIALVERSIONIDorg.apache.catalina.core.StandardContext
38MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.core.StandardHostremoveAlias
39CORRECTNESSEC_UNRELATED_TYPESorg.apache.catalina.core.StandardHostValvefindErrorPage
40MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.core.StandardPipeline
41MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.loader.WebappClassLoader
42MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.loader.WebappClassLoader
43CORRECTNESSMF_CLASS_MASKS_FIELDorg.apache.catalina.mbeans.DefaultContextMBean
44CORRECTNESSMF_CLASS_MASKS_FIELDorg.apache.catalina.mbeans.GroupMBean
45CORRECTNESSMF_CLASS_MASKS_FIELDorg.apache.catalina.mbeans.MemoryUserDatabaseMBean
46CORRECTNESSMF_CLASS_MASKS_FIELDorg.apache.catalina.mbeans.NamingResourcesMBean
47CORRECTNESSMF_CLASS_MASKS_FIELDorg.apache.catalina.mbeans.RoleMBean
48CORRECTNESSMF_CLASS_MASKS_FIELDorg.apache.catalina.mbeans.StandardContextMBean
49CORRECTNESSMF_CLASS_MASKS_FIELDorg.apache.catalina.mbeans.UserMBean
50CORRECTNESSDMI_INVOKING_TOSTRING_ON_ARRAYorg.apache.catalina.realm.RealmBaseauthenticate
51MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.realm.RealmBase
52STYLEDLS_DEAD_LOCAL_STOREorg.apache.catalina.servlets.CGIServletinit
53MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.servlets.DefaultServlet
54MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.servlets.DefaultServlet
55MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.session.JDBCStore
56MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.session.JDBCStore
57STYLEDLS_DEAD_LOCAL_STOREorg.apache.catalina.session.ManagerBasegetRandomBytes
58MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.session.ManagerBase
59MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.session.ManagerBase
60MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.session.PersistentManager
61CORRECTNESSMF_CLASS_MASKS_FIELDorg.apache.catalina.session.PersistentManagerBase
62MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.session.StandardManager
63MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.session.StandardSession
64CORRECTNESSSE_METHOD_MUST_BE_PRIVATEorg.apache.catalina.session.StandardSessionreadObject
65CORRECTNESSSE_METHOD_MUST_BE_PRIVATEorg.apache.catalina.session.StandardSessionwriteObject
66BAD_PRACTICESE_NO_SERIALVERSIONIDorg.apache.catalina.session.StandardSession
67MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.session.StoreBase
68MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.session.StoreBase
69STYLEDLS_DEAD_LOCAL_STOREorg.apache.catalina.ssi.SSIFlastmodprocess
70MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.ssi.SSIMediator
71MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.startup.ContextConfig
72MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.startup.ContextConfig
73MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.startup.DigesterFactory
74MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.startup.Embedded
75MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.startup.HostConfig
76MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.startup.HostConfig
77STYLEST_WRITE_TO_STATIC_FROM_INSTANCE_METHODorg.apache.catalina.startup.TldConfigsetTldNamespaceAware
78STYLEST_WRITE_TO_STATIC_FROM_INSTANCE_METHODorg.apache.catalina.startup.TldConfigsetTldValidation
79MT_CORRECTNESSSTCAL_INVOKE_ON_STATIC_DATE_FORMAT_INSTANCEorg.apache.catalina.util.CookieToolsgetCookieHeaderValue
80MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.util.InstanceSupportaddInstanceListener
81MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.util.InstanceSupportremoveInstanceListener
82MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.util.LifecycleSupportaddLifecycleListener
83MT_CORRECTNESSML_SYNC_ON_FIELD_TO_GUARD_CHANGING_THAT_FIELDorg.apache.catalina.util.LifecycleSupportremoveLifecycleListener
84MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.util.Strftime
85BAD_PRACTICEHE_EQUALS_USE_HASHCODEorg.apache.catalina.util.URLequals
86CORRECTNESSNP_ALWAYS_NULLorg.apache.catalina.valves.AccessLogValvereplace
87MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.valves.ErrorReportValve
88MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.valves.RequestFilterValve
89MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.catalina.valves.ValveBase
90MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.coyote.http11.Http11Processor
91MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.coyote.http11.Http11Protocol
92MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.coyote.http11.Http11Protocol
93MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.coyote.http11.InternalInputBuffer
94MALICIOUS_CODEMS_MUTABLE_ARRAYorg.apache.jasper.Constants
95MALICIOUS_CODEMS_MUTABLE_ARRAYorg.apache.jasper.Constants
96MALICIOUS_CODEMS_MUTABLE_ARRAYorg.apache.jasper.Constants
97STYLEDLS_DEAD_LOCAL_STOREorg.apache.jasper.compiler.ParserparseAttributeDirective
98STYLEDLS_DEAD_LOCAL_STOREorg.apache.jasper.compiler.ParserparseVariableDirective
99MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.jasper.compiler.ServletWriter
100MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.jasper.compiler.ServletWriter
101CORRECTNESSIL_INFINITE_RECURSIVE_LOOPorg.apache.jasper.runtime.JspContextWrapperinclude
102MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.jasper.runtime.TagHandlerPool
103MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.jasper.runtime.TagHandlerPool
104MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.jasper.util.SystemLogHandler
105MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.jasper.util.SystemLogHandler
106CORRECTNESSINT_BAD_COMPARISON_WITH_SIGNED_BYTEorg.apache.jasper.xmlparser.ASCIIReaderread
107STYLEST_WRITE_TO_STATIC_FROM_INSTANCE_METHODorg.apache.jk.apr.AprImpl
108CORRECTNESSDMI_INVOKING_TOSTRING_ON_ARRAYorg.apache.jk.common.ChannelSocketread
109CORRECTNESSDMI_INVOKING_TOSTRING_ON_ARRAYorg.apache.jk.common.JkInputStreamreceive
110CORRECTNESSMF_CLASS_MASKS_FIELDorg.apache.jk.common.JkMX
111CORRECTNESSDMI_INVOKING_TOSTRING_ON_ARRAYorg.apache.jk.common.MsgAjpdump
112CORRECTNESSUWF_NULL_FIELDorg.apache.jk.config.ApacheConfig
113MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.jk.server.JkCoyoteHandler
114STYLEST_WRITE_TO_STATIC_FROM_INSTANCE_METHODorg.apache.jk.server.JkMain
115MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.naming.ContextBindings
116BAD_PRACTICEDE_MIGHT_IGNOREorg.apache.naming.factory.SendMailFactory$1run
117BAD_PRACTICECN_IDIOM_NO_SUPER_CALLorg.apache.naming.resources.ResourceAttributesclone
118MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.tomcat.util.IntrospectionUtils
119CORRECTNESSEQ_SELF_USE_OBJECTorg.apache.tomcat.util.buf.MessageBytesequals
120MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.tomcat.util.buf.StringCache
121MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.tomcat.util.buf.StringCache
122STYLEST_WRITE_TO_STATIC_FROM_INSTANCE_METHODorg.apache.tomcat.util.buf.StringCachereset
123STYLEST_WRITE_TO_STATIC_FROM_INSTANCE_METHODorg.apache.tomcat.util.buf.StringCachereset
124STYLEST_WRITE_TO_STATIC_FROM_INSTANCE_METHODorg.apache.tomcat.util.buf.StringCachesetByteEnabled
125STYLEST_WRITE_TO_STATIC_FROM_INSTANCE_METHODorg.apache.tomcat.util.buf.StringCachesetCacheSize
126STYLEST_WRITE_TO_STATIC_FROM_INSTANCE_METHODorg.apache.tomcat.util.buf.StringCachesetCharEnabled
127STYLEST_WRITE_TO_STATIC_FROM_INSTANCE_METHODorg.apache.tomcat.util.buf.StringCachesetTrainThreshold
128BAD_PRACTICEES_COMPARING_STRINGS_WITH_EQorg.apache.tomcat.util.digester.DigesterupdateBodyText
129MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.tomcat.util.digester.GenericParser
130MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.tomcat.util.digester.GenericParser
131CORRECTNESSNP_NULL_PARAM_DEREForg.apache.tomcat.util.digester.SetNextRuleend
132CORRECTNESSNP_NULL_PARAM_DEREForg.apache.tomcat.util.digester.SetRootRuleend
133CORRECTNESSNP_NULL_PARAM_DEREForg.apache.tomcat.util.digester.SetTopRuleend
134MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.tomcat.util.digester.XercesParser
135MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.tomcat.util.digester.XercesParser
136MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.tomcat.util.digester.XercesParser
137MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.tomcat.util.digester.XercesParser
138MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.tomcat.util.http.HttpMessages
139MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.tomcat.util.http.MimeMap
140MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.tomcat.util.log.SystemLogHandler
141MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.tomcat.util.log.SystemLogHandler
142MALICIOUS_CODEMS_MUTABLE_ARRAYorg.apache.tomcat.util.net.SSLSupport
143BAD_PRACTICEHE_EQUALS_USE_HASHCODEorg.apache.tomcat.util.net.URLequals
144MALICIOUS_CODEMS_SHOULD_BE_FINALorg.apache.tomcat.util.threads.ThreadWithAttributes
back