Polyspace Support of CWE Categories
Common Weakness Enumeration (CWE™) is a dictionary of common software weakness types that can occur in software architecture, design, code, or implementation. These weaknesses can lead to security vulnerabilities. CWE rules are organized into categories of related issues. The categories themselves are not weaknesses but helps organize the results around specific types of weaknesses. For example, CWE 310 is the category Cryptographic issues which collects the cryptography related CWE rules. After you run a Polyspace® Bug Finder™ analysis, use the CWE categories to group and organize the CWE violations in your code by type of issue.
This table lists CWE categories that you can map to Polyspace defect checkers and Polyspace CWE coding rule checkers.