{"id":53361,"date":"2013-08-12T14:25:54","date_gmt":"2013-08-12T14:25:54","guid":{"rendered":"https:\/\/www.checkmarx.com\/?post_type=glossary&#038;p=3491"},"modified":"2025-12-13T20:19:28","modified_gmt":"2025-12-13T18:19:28","slug":"cvs-static-code-analysis-2","status":"publish","type":"glossary","link":"https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/","title":{"rendered":"CVS Static Code Analysis"},"content":{"rendered":"<p style=\"text-align: justify\">CVS (Concurrent Versions System) is a system for managing the source code within a development team. It allows for collaborative development by supporting a means of tracking each change made to the source code over any period of time. CVS was one of the first pieces of software to support this functionality and generally today, it is used in older operating environments as there are more powerful tools available on the market now. However, CVS static code analysis isn&#8217;t supported by CVS itself. External static code analysis solutions that can integrate into CVS and pull sources from it should be used.<\/p>\n<p><span style=\"color: #333333\"><!--more--><\/span><\/p>\n<p style=\"text-align: justify\">In order to conduct static code analysis within the CVS environment \u2013 you will need to choose a static code analysis tool that has a high-level of interoperability with that environment. Checkmarx is a great fit for this and it\u2019s easy to integrate and get security testing done without any changes to the way your R&amp;D team currently works. It\u2019s vital for development teams to identify and defuse problems early in the coding process so that they can deal with the code while it\u2019s still fresh in their minds and not several months down the line when the issue is detected by a compliance team, and it becomes more challenging , time consuming and costly to fix it.<\/p>\n<p style=\"text-align: justify\">When you use a tool like Checkmarx, the reporting side of CVS static code analysis is really straightforward. You can test the code in real time and generate vulnerability reports that show exactly how many issues you have with very low rates of false positive\/negative results. You can also track how each commit compares with previous cycles to work out where problems are arising and how to better address them in development. It\u2019s also simple to pull out an HTML color coded report that shows exactly where the flaws are in the code \u2013 so you can fix them without searching for them.<\/p>","protected":false},"excerpt":{"rendered":"<p>CVS (Concurrent Versions System) is a system for managing the source code within a development team. It allows for collaborative development by supporting a means of tracking each change made to the source code over any period of time. CVS was one of the first pieces of software to support this functionality and generally today, [&hellip;]<\/p>\n","protected":false},"author":11,"featured_media":0,"template":"","glossary-tags":[],"class_list":["post-53361","glossary","type-glossary","status-publish","hentry"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.1.1 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>CVS Static Code Analysis - Checkmarx<\/title>\n<meta name=\"description\" content=\"CVS Static Code Analysis - Test the code in real time and generate vulnerability reports that show exactly how many issues you have!\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"CVS Static Code Analysis - Checkmarx\" \/>\n<meta property=\"og:description\" content=\"CVS Static Code Analysis - Test the code in real time and generate vulnerability reports that show exactly how many issues you have!\" \/>\n<meta property=\"og:url\" content=\"https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/\" \/>\n<meta property=\"og:site_name\" content=\"Checkmarx\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/Checkmarx.Source.Code.Analysis\" \/>\n<meta property=\"article:modified_time\" content=\"2025-12-13T18:19:28+00:00\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:site\" content=\"@checkmarx\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/\",\"url\":\"https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/\",\"name\":\"CVS Static Code Analysis - Checkmarx\",\"isPartOf\":{\"@id\":\"https:\/\/checkmarx.com\/#website\"},\"datePublished\":\"2013-08-12T14:25:54+00:00\",\"dateModified\":\"2025-12-13T18:19:28+00:00\",\"description\":\"CVS Static Code Analysis - Test the code in real time and generate vulnerability reports that show exactly how many issues you have!\",\"breadcrumb\":{\"@id\":\"https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Glossary\",\"item\":\"https:\/\/checkmarx.com\/glossary\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"CVS Static Code Analysis\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/checkmarx.com\/#website\",\"url\":\"https:\/\/checkmarx.com\/\",\"name\":\"Checkmarx\",\"description\":\"The world runs on code. We secure it.\",\"publisher\":{\"@id\":\"https:\/\/checkmarx.com\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/checkmarx.com\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/checkmarx.com\/#organization\",\"name\":\"Checkmarx\",\"url\":\"https:\/\/checkmarx.com\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/checkmarx.com\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/02\/logo-dark.svg\",\"contentUrl\":\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/02\/logo-dark.svg\",\"width\":1,\"height\":1,\"caption\":\"Checkmarx\"},\"image\":{\"@id\":\"https:\/\/checkmarx.com\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/Checkmarx.Source.Code.Analysis\",\"https:\/\/x.com\/checkmarx\",\"https:\/\/www.youtube.com\/user\/CheckmarxResearchLab\",\"https:\/\/www.linkedin.com\/company\/checkmarx\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"CVS Static Code Analysis - Checkmarx","description":"CVS Static Code Analysis - Test the code in real time and generate vulnerability reports that show exactly how many issues you have!","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/","og_locale":"en_US","og_type":"article","og_title":"CVS Static Code Analysis - Checkmarx","og_description":"CVS Static Code Analysis - Test the code in real time and generate vulnerability reports that show exactly how many issues you have!","og_url":"https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/","og_site_name":"Checkmarx","article_publisher":"https:\/\/www.facebook.com\/Checkmarx.Source.Code.Analysis","article_modified_time":"2025-12-13T18:19:28+00:00","twitter_card":"summary_large_image","twitter_site":"@checkmarx","twitter_misc":{"Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/","url":"https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/","name":"CVS Static Code Analysis - Checkmarx","isPartOf":{"@id":"https:\/\/checkmarx.com\/#website"},"datePublished":"2013-08-12T14:25:54+00:00","dateModified":"2025-12-13T18:19:28+00:00","description":"CVS Static Code Analysis - Test the code in real time and generate vulnerability reports that show exactly how many issues you have!","breadcrumb":{"@id":"https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/checkmarx.com\/learn\/sast\/effective-static-source-code-analysis\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Glossary","item":"https:\/\/checkmarx.com\/glossary\/"},{"@type":"ListItem","position":2,"name":"CVS Static Code Analysis"}]},{"@type":"WebSite","@id":"https:\/\/checkmarx.com\/#website","url":"https:\/\/checkmarx.com\/","name":"Checkmarx","description":"The world runs on code. We secure it.","publisher":{"@id":"https:\/\/checkmarx.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/checkmarx.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/checkmarx.com\/#organization","name":"Checkmarx","url":"https:\/\/checkmarx.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/checkmarx.com\/#\/schema\/logo\/image\/","url":"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/02\/logo-dark.svg","contentUrl":"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/02\/logo-dark.svg","width":1,"height":1,"caption":"Checkmarx"},"image":{"@id":"https:\/\/checkmarx.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/Checkmarx.Source.Code.Analysis","https:\/\/x.com\/checkmarx","https:\/\/www.youtube.com\/user\/CheckmarxResearchLab","https:\/\/www.linkedin.com\/company\/checkmarx"]}]}},"_links":{"self":[{"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/glossary\/53361","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/glossary"}],"about":[{"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/types\/glossary"}],"author":[{"embeddable":true,"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/users\/11"}],"version-history":[{"count":0,"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/glossary\/53361\/revisions"}],"wp:attachment":[{"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/media?parent=53361"}],"wp:term":[{"taxonomy":"glossary-tags","embeddable":true,"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/glossary-tags?post=53361"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}