Release Notes v5.1

We’re thrilled to announce that we’ve released version 5.1.0 onDec 14, 2021

Download on the Atlassian Marketplace for Data Center and Server

When upgrading from app version 4.x, please read our Migration guide to app version 5.

New features

Security hotspots in statistics and as pull request annotations

The app now shows the security hotspots to review in the pull request and repository statistics.

 

Shows top three languages used in repository and pull request statistics

Besides the LOC count, the app now also shows the top three programming languages used for a project within the repository and the pull request statistics.

 

Bug fixes

Code insight annotations are missing if webhook arrival <60 seconds after last cache load if project already has open pull requests

Due to a caching issue, code insight annotations are not added if a new pull request analysis arrives via webhook within a 60 seconds time window since the last cache load (e.g. by opening the open pull request list).

The code insight report does not link to the pull request when pull request analysis was used

Security

Confirmed that Sonar for Bitbucket does not use log4j and is not affected by CVE-2021-44228 aka Log4Shell.

 

Do you have any questions, suggestions, or problems?

Let us know. We’re glad to help!

Changelog

SONARâ„¢, SONARQUBEâ„¢ and SONARCLOUDâ„¢ are independent and trademarked products and services of SonarSource SA: see sonarsource.com, sonarqube.org, sonarcloud.io.