2
I Use This!
Low Activity
Analyzed 29 days ago. based on code collected 29 days ago.

Project Summary

Web Application for the Ohloh Stack. Currently Rails 4.2.7 & Ruby 2.2.5

Tags

blackduck openhub oss postgresql rails ruby rubyonrails

Apache License 2.0
Permitted

Commercial Use

Modify

Distribute

Place Warranty

Sub-License

Private Use

Use Patent Claims

Forbidden

Hold Liable

Use Trademarks

Required

Include Copyright

State Changes

Include License

Include Notice

These details are provided for information only. No information here is legal advice and should not be used as such.

Project Security

Vulnerabilities per Version ( last 10 releases )

There are no reported vulnerabilities

Project Vulnerability Report

Security Confidence Index

Poor security track-record
Favorable security track-record

Vulnerability Exposure Index

Many reported vulnerabilities
Few reported vulnerabilities

Did You Know...

  • ...
    use of OSS increased in 65% of companies in 2016
  • ...
    you can embed statistics from Open Hub on your site
  • ...
    55% of companies leverage OSS for production infrastructure
  • ...
    by exploring contributors within projects, you can view details on every commit they have made to that project
About Project Security

Languages

Ruby
66%
SQL
21%
Haml
7%
6 Other
6%

30 Day Summary

Feb 9 2025 — Mar 11 2025

12 Month Summary

Mar 11 2024 — Mar 11 2025
  • 32 Commits
    Down -53 (62%) from previous 12 months
  • 3 Contributors
    Down -1 (25%) from previous 12 months

Ratings

1 user rates this project:
5.0
 
5.0/5.0
Click to add your rating
  
Review this Project!
 

Static Analysis ( Generated by Coverity Scan for Ohloh UI )

Repository URL: https://github.com/blackducksoftware/ohloh-ui

Version: 2.6

2025-03-05
Last Analyzed
113,000
Lines of Code Analyze
1.81
Defect Density

Defects by status for current build

272
Total defects
183
Outstanding
89
Fixed

CWE Top 25 defects

ID CWE-Name Number of Defects
78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') 3
89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') 13
352 Cross-Site Request Forgery (CSRF) 1
676 Use of Potentially Dangerous Function 6
798 Use of Hard-coded Credentials 33
829 Inclusion of Functionality from Untrusted Control Sphere 4
862 Missing Authorization 11