BLOG
Sonar's latest blog posts
Building Confidence and Trust in AI-Generated Code
To tackle the accountability and ownership challenge accompanying AI-generated code, we are introducing Sonar AI Code Assurance
Increase developer velocity today with Clean as You Code
The Clean as You Code methodology allows developers to keep working on new and interesting projects without sacrificing quality or getting bogged down in refactoring legacy code.
Read Blog post >
We are Sonar!
Culture is a key aspect of working at Sonar. It is our binding agent; it is what we value, what we believe in, the way we work, and the way we interact. It is what makes us SonarSourcers!
Read Blog post >
Common TypeScript Issues Nº 4: Don't create and drop objects immediately
We crunched the data from SonarLint to discover the top 5 most common TypeScript issues. In this 5 part series, we outline each issue and how to avoid it.
Read Blog post >
Announcing SonarQube 9.9 LTS!
Big year, big announcement – the most anticipated SonarQube 9.9 Long-Term-Support release is here! Check out this post for all details.
Read Blog post >
Common TypeScript Issues Nº 5: Optional property declarations
We crunched the data from SonarLint to discover the top 5 most common TypeScript issues. In this 5 part series, we outline each issue and how to avoid it.
Read Blog post >
OpenEMR - Remote Code Execution in your Healthcare System
We recently discovered three vulnerabilities that allow arbitrary code execution on OpenEMR. Let’s see what we can learn from them and discuss their patches!
Read Blog post >
Vulnerability Research Highlights 2022
Our research team looks back at a great year and summarizes the highlights of their vulnerability research in 2022.
Read Blog post >
Level up your team's skills as they code
Clear context and specific education for why an issue occurs and how to fix it should be by the developers’ side without leaving the development workflow. Sonar has your answer.
Read Blog post >
Lesser spotted React mistakes: What are we even rendering?
This series is dedicated to the small, but common pitfalls and errors you can encounter when writing React code. Whether an experienced JavaScript | TypeScript developer or just starting out, the results can be surprising.
Read Blog post >
Cacti: Unauthenticated Remote Code Execution
Learn how we discovered a critical vulnerability in Cacti with the help of SonarCloud.
Read Blog post >
SonarQube 9.8 is here!
The latest version of SonarQube from Sonar has arrived. Check out what’s new in SonarQube 9.8 in this quick video and download it now.
Read Blog post >