Skip to main content
Inspiring
September 23, 2025
Question

SAST tool recommendations for .cfm or .cfc files

  • September 23, 2025
  • 1 reply
  • 150 views

Hello,

 

We have been using SonarQube for code quality testing of our applications. However, I was wondering what would be the recommended one for ColdFusion files. I know that SonarQube officially doesn't support .cfm or .cfc files(although there is some third party plugin). So, wondering what  industry standard tools are being used to scan our custom ColdFusion files.

 

Thanks,

Manoj.

    1 reply

    BKBK
    Community Expert
    Community Expert
    September 23, 2025

    I would recommend Foundeo's products and services. Foundeo's founder, Pete Freitag, is currently the biggest name in CFML security.

    Inspiring
    September 23, 2025

    great thanks. we have been using Fuseguard from Foundeo.  so, I'm aware of the company.