Skip to content

RepoScan-Org-QA/vulnado-codeScanningAlerts

View on GitHub ↗Related repositories →

Purposely vulnerable Java application to help lead secure coding workshops

active 2024-10-282026-03-30 (UTC)

Partial coverage24,184 / 26,315 hourly files (92%) · 2 absent upstream · 2,130 failed, retryable2023-08-152026-08-15 (UTC)— sampled evenly across the window, so rankings and trends hold; absolute counts scale up.
Events
31
Pushes
17
Pull requests
0
Issues
10
Stars
0
Forks
2

Activity over time

Daily event counts in the loaded window

Line chart, 519 days from 2024-10-28 to 2026-03-30. Pushes: 17 total, peak 6 in a day. Pull requests: 0 total, peak 0 in a day. Issues: 10 total, peak 10 in a day. Comments: 2 total, peak 2 in a day. Stars: 0 total, peak 0 in a day.

  • Pushes
  • Pull requests
  • Issues
  • Comments
  • Stars

Stars, PRs, issues and forks are under-captured in the later part of this window. GH Archive progressively stopped capturing non-push events during 2026 — −95% or worse by the end of the window. Every series here except Pushes fades for that reason, so a decline above reflects the archive, not this repository. Pushes stay reliable throughout, so read them, and the contributor counts derived from them, as the real signal. Data health has the measurements.

Top contributors

Pushes, PRs, issues, reviews and comments — stars and forks excluded, so this is contribution rather than popularity

ContributorContributionsPushesPRsComments
RepoScanAutomation201702
veracode-workflow-app[bot]9000

Recent activity

Latest issues, pull requests and releases

  • Issue#11veracode-workflow-app[bot]2024-12-12 18:12
    Use of Hard-coded Password [VID:259:BOOT-INF/classes/application.properties:1]
  • Issue#10veracode-workflow-app[bot]2024-12-12 18:12
    Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) [VID:80:com/scalesec/vulnado/CowController.java:13]
  • Issue#9veracode-workflow-app[bot]2024-12-12 18:12
    Use of a Broken or Risky Cryptographic Algorithm [VID:327:com/scalesec/vulnado/Postgres.java:67]
  • Issue#8veracode-workflow-app[bot]2024-12-12 18:12
    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') [VID:89:com/scalesec/vulnado/User.java:49]
  • Issue#7veracode-workflow-app[bot]2024-12-12 18:12
    Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') [VID:78:com/scalesec/vulnado/Cowsay.java:16]
  • Issue comment#1RepoScanAutomation2024-12-12 18:08
    Test
  • Issue#6veracode-workflow-app[bot]2024-12-12 18:06
    Use of Hard-coded Password ('Credentials Management') [VID:5]
  • Issue#5veracode-workflow-app[bot]2024-12-12 18:06
    Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) ('Cross-Site Scripting (XSS)') [VID:4]
  • Issue#3veracode-workflow-app[bot]2024-12-12 18:06
    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') ('SQL Injection') [VID:2]
  • Issue#2veracode-workflow-app[bot]2024-12-12 18:06
    Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') ('Command or Argument Injection') [VID:1]
  • Issue comment#1RepoScanAutomation2024-12-12 17:51
    Test
  • Issue#1RepoScanAutomation2024-12-12 17:51
    Test

Totals cover only the window loaded into ClickHouse and count events, not GitHub's lifetime totals — 0 stars here means stars gained during the window, not the repo's star count.