Sonar's latest blog posts
Announcing SonarSweep: Improving training data quality for coding LLMs
Recent research from Anthropic has shown that even a small amount of malicious or poor quality training data can have a massively negative impact on a model’s performance, exposing users to significant security and quality issues.


ES2023 introduces new array copying methods to JavaScript
There are new array methods in JavaScript and they are here to make our programs more predictable and maintainable.
Read blog post >

CNCF Silver membership
Sonar becomes Silver member of the Cloud native computing foundation
Read Blog >
Get new blog posts delivered directly to your inbox!
Stay up-to-date with the latest Sonar content. Subscribe now to receive the latest blog articles.

Why SonarQube Server 9.9 LTS is a must-have for Python developers
Learn about the changes in SonarQube Server 9.9 LTS that help Python developers write Code Quality.
Read article >

Weird Python: 5 Unexpected Behaviors in the Python Interpreter
Five ways in which Python's interpreter behaves in ways that you wouldn't expect.
Read Blog >

Reflections from DevNexus, the largest Java conference in the U.S.A.
Reflections from DevNexus, the largest Java conference in the U.S.A.
Read Blog >

Interview with Sonar Python Developers Part 2
Latest Python developments. Interview with Python developers from Sonar.
Read Blog >

Odoo: Get your Content Type right, or else!
What do we need content types for anyway? Let's look into how an incorrect content type led to a real-world vulnerability in Odoo, CVE-2023-1434.
Read article >

Interview with Sonar Python Developers Part 1
Why should I learn Python language? When should I use Python? Is tooling around Python development mature?
Read Blog >

Sonar ❤️ Compiler Explorer: Write clean C++ code inside your browser
Sonar ❤️ Compiler Explorer: Write clean C++ code inside your browser
Read Blog >

Paying maintainers: the HOWTO
It is no surprise that lots of well-intentioned people have failed to figure out how to effectively pay maintainers.
Read article >

Pretalx Vulnerabilities: How to get accepted at every conference
We recently discovered two vulnerabilities in pretalx and found a generic technique to gain code execution from a file write.
Read article >