Skip to content

SonarQube Result-Writer fails: SonarQube-WebApi allows to request for a maximum of 10000 issues only #33

Description

@slangenfeld-dev

The WriteFiles-Class fails, as SonarQube only allows to request for a maximum of 10000 issues. This could be fixed by building the request with the rules-parameter (&rules=squid:XXX), which will give us only the relevant issues. (SonarQube version 6.2)

Activity

  1. davewichers commented on Mar 17, 2017

    @davewichers
    Contributor

    Thanks for reporting. Another Benchmark user reported the same issue this week, along with some other details as we got farther along that we need to investigate, fix, and push out for SonarQube.

  2. minshi123 commented on Dec 20, 2018

    @minshi123

    hi, any progress here:-? (same questions.)

  3. davewichers commented on Jun 29, 2019

    @davewichers
    Contributor

    FYI. The SonarQube support in Benchmark is so old as to be fundamentally broken I suspect. Need to rewrite how this works. Ideally, SonarQube can simply export an XML results file now, and we can write a parser for it, like all the other tools. If anyone knows that SonarQube can export a results file, please explain how, and send me a Benchmark results file for SonarQube and I'm happy to write a parser for it. (Or you could do it yourself and submit a pull request :-) ).

  4. magussiro commented on Aug 1, 2019

    @magussiro

    HI
    I am trying to parsing SonarQubeJava rules sets to cwe, but i found the cwelookup method only transfer squid to cwe one on one, if there have easyway to parse SonarQubeJava rules sets?

    here is the order sets
    https://pastebin.com/r2SDQRzj

    ref:

    src/main/java/org/owasp/benchmark/score/parsers/SonarQubeReader.java

    https://github.com/SonarSource/sonar-java/tree/35e70591626e1b27bb059f795dda0327c02a09d3/java-checks/src/main/resources/org/sonar/l10n/java/rules/squid

  5. davewichers commented on Oct 7, 2021

    @davewichers
    Contributor

    @darkspirit510 - Have you fixed this issue too?

  6. added a commit that references this issue on Apr 13, 2026
    22b52c3
  7. TheAuditorTool commented on Apr 13, 2026

    @TheAuditorTool
    Contributor

    @darkspirit510 - Have you fixed this issue too?

    Its fixed now. Please review.

  8. added 3 commits that reference this issue on Apr 13, 2026
    6286d30
    698ae83
    adef7bc
  9. davewichers commented on Apr 14, 2026

    @davewichers
    Contributor

    @darkspirit510 - Another SonarQube related fix from @TheAuditorTool. Can you review this one too and let me know what you think?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions