Code Scan
Hello is there any tool that i can scan the ColdFusion code for possible vulnerabilities or security issues? Thanks in advance
Hello is there any tool that i can scan the ColdFusion code for possible vulnerabilities or security issues? Thanks in advance
Yes, there is. It is a feature restricted to the Enterprise or free 30-day Trial edition only, in CF2016 or CF2018. And it works from within CF Builder 2016 or 2018 (paid or 60-day trial edition). Search for the ColdFusion Security Analyzer to find more info.
And yes, it certainly sucks that it’s held to be Enterprise (or Trial) only. I think all would agree that it should be in Standard and indeed the free Developer edition. But the CF Team management seems adamant on holding this as an Enterprise-only feature.
But I will repeat: you can get it using the free trial editions of both CF and CF Builder. We shouldn’t have to play such games, and I have not pointed this out so straightforwardly here before. But since this was not changed for CF2018, and since you are asking here, I am simply presenting the facts as I know them for people to decide what to do with it (and to correct me if I’m wrong).
/charlie
Already have an account? Login
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.