CxOSA is currently dependent on CxSAST and supported code languages are defined as part of the CxSAST release. For more information about CxSAST, see Release Notes for CxSAST Version 8.9.0.
CxOSA analyzes the open sources using the following methods:
- Analyzes the open source third parties themselves, supported in the languages list below.
- Analyzes the projects' manifest files by resolving their dependencies against customer-defined repositories.
The following open source code analysis languages and package managers can be analyzed using v8.9.0:
Use the search tool to find a specific subject.