Recommendations
EXP00-J. Use the same type for the second and third operands in conditional expressions
EXP01-J. Ensure a null pointer is not dereferenced
EXP02-J. Do not ignore values returned by methods
EXP03-J. Do not compare String objects using equality or relational operators
EXP04-J. Be wary of invisible implicit casts when using compound assignment operators
EXP05-J. Be careful of autoboxing when removing elements from a Collection
EXP06-J. Be aware of the short-circuit behavior of the conditional AND and OR operators
EXP07-J. Do not diminish the benefits of constants by assuming their values in expressions
EXP08-J. Be aware of integer promotions in binary operators
EXP09-J. Use parentheses for precedence of operation
EXP10-J. Understand the evaluation of expressions containing non short-circuit operators
Rules
EXP30-J. Do not depend on operator precedence while using expressions containing side-effects
EXP31-J. Avoid side effects in assertions
EXP32-J. Do not use the equal and not equal operators to compare boxed primitives
EXP33-J. Do not use the equals method to compare the contents of arrays
Risk Assessment Summary
Recommendations
Recommendation |
Severity |
Likelihood |
Remediation Cost |
Priority |
Level |
|---|---|---|---|---|---|
EXP00- J |
low |
unlikely |
medium |
P2 |
L3 |
EXP01- J |
low |
likely |
high |
P3 |
L3 |
EXP02- J |
medium |
probable |
medium |
P8 |
L2 |
EXP03- J |
low |
probable |
medium |
P4 |
L3 |
EXP04- J |
low |
unlikely |
medium |
P2 |
L3 |
EXP05- J |
low |
probable |
low |
P6 |
L2 |
EXP06- J |
low |
unlikely |
medium |
P2 |
L3 |
EXP07- J |
low |
unlikely |
medium |
P2 |
L3 |
EXP08- J |
low |
probable |
medium |
P4 |
L3 |
EXP09- J |
low |
probable |
medium |
P4 |
L3 |
EXP30- J |
low |
unlikely |
medium |
P2 |
L3 |
EXP31- J |
low |
unlikely |
low |
P3 |
L3 |
EXP32- J |
low |
likely |
medium |
P6 |
L2 |
Rules
Rule |
Severity |
Likelihood |
Remediation Cost |
Priority |
Level |
|---|---|---|---|---|---|
EXP30- J |
low |
unlikely |
medium |
P2 |
L3 |
EXP31- J |
low |
unlikely |
low |
P3 |
L3 |
EXP32- J |
low |
likely |
medium |
P6 |
L2 |
DCL31-J. Qualify mathematical constants with the static and final modifiers The CERT Sun Microsystems Secure Coding Standard for Java EXP00-J. Use the same type for the second and third operands in conditional expressions