| name | Java CWE Security Skills Collection |
|---|---|
| description | 53 AI-ready security remediation guides for Java vulnerabilities |
Use this skill when fixing Java security vulnerabilities, remediating SAST findings, or resolving CWE issues.
npx skills add DevelopersCoffee/java-cwe-security-skills --all53 deterministic remediation patterns for CWEs in Java.
- CWE-89: SQL Injection
- CWE-79: Cross-Site Scripting
- CWE-78: OS Command Injection
- CWE-94: Code Injection
- CWE-287: Improper Authentication
- CWE-306: Missing Authentication
- CWE-284: Improper Access Control
- CWE-327: Broken Crypto Algorithm
- CWE-328: Weak Hash
- CWE-330: Insufficient Randomness
- CWE-200: Information Exposure
- CWE-209: Error Message Exposure
- CWE-532: Log Injection
- CWE-22: Path Traversal
- CWE-611: XXE Injection
- CWE-502: Insecure Deserialization
- CWE-400: Resource Exhaustion
- CWE-770: Resource Allocation Limits
https://github.com/DevelopersCoffee/java-cwe-security-skills
License: MIT