Omniscia Vendor Finance Audit

Static Analysis

Static Analysis

The execution of our static analysis toolkit identified 300 potential issues within the codebase of which 284 were ruled out to be false positives or negligible findings.

The remaining 16 issues were validated and grouped and formalized into the 8 exhibits that follow:

IDSeverityAddressedTitle
LPI-01SIllegible Numeric Value Representation
LPI-02SMathematical Tautologies
VFM-01SIllegible Numeric Value Representation
VFM-02SInexistent Sanitization of Input Address
VLE-01SIllegible Numeric Value Representation
VOE-01SInexistent Sanitization of Input Addresses
VPF-01SMathematical Tautologies
VPF-02SInexistent Sanitization of Input Addresses