We have a Java based client/server project. Recently one of the testers has found a SQL injection vulnerability while testing the application.
We do not have enough resources to manually check the application for SQL injections.
Are there any SQL injection finders / static code analyzers that find SQL vulnerabilities in Java code?
Yes!
Here are some:
Read: OWASP's List of Source Analysis Tools
If you love us? You can donate to us via Paypal or buy me a coffee so we can maintain and grow! Thank you!
Donate Us With