Static Analysis of Corpus of Source Codes of Python Applications

Денис Алексеевич Капустин, V. V. Shvyrov, T. I. Shulika · Programming and Computer Software · 2023

Abstract A static analysis method is one of the popular methods of software code analysis. Such method allows checking the code for compliance with the language specification as well as finding potential vulnerabilities. In this work, a static analysis of a corpus of listings of open-source Python applications is performed. Using the Bandit library, statistical values of various categories of potential vulnerabilities are found, and a rating table of vulnerabilities detected in the dataset involved is constructed. A qualitative analysis of threats is performed according to their severity based on the CWE data.

Read the paper · More papers on PaperTik