CLI updates - Commercial
The updates on this page apply to the Veracode CLI in the Commercial Region.
April 15, 2024
Veracode CLI 2.16.0
This update includes the following improvements:
- The
veracode package
command now supports iOS, in addition to existing support for Java, JavaScript, .NET, Python, PHP, Scala, Kotlin, Go, and Ruby on Rails. You use this command to auto-package your applications for Static Analysis and Software Composition Analysis (SCA) upload scans. - The packaged artifacts use a Veracode approved filename format.
- Improved error messaging.
- The
veracode package
command output now displays the installed CLI version.
March 29, 2024
Fix flaws in multiple files in a directory
The veracode fix
command now provides suggested fixes for a directory of source files, in addition to a single source file. You can fix flaws in multiple files as a batch, without having to rescan your code each time you apply a fix.
March 27, 2024
Veracode CLI 2.14.0
The veracode package
command now supports application packaging for the following languages:
- .NET
- Go
- Kotlin
- PHP
- Ruby on Rails
- Scala
February 5, 2024
New commands for reporting on repository contributors
The Veracode CLI now includes the following commands:
veracode repository add
: create an Excel file that lists all accessible repositories from which to import contributing developers.veracode repository report
: create a report that lists all contributing developers for each repository.
January 18, 2024
The Veracode CLI now supports auto-packaging for Veracode Static Analysis
The Veracode CLI now supports Static Analysis auto-packaging for Java, JavaScript, and Python. The package
command removes manual packaging steps to streamline your application security tests.
January 9, 2024
Install the CLI on Windows with a PowerShell script
You can now install the Veracode CLI on Windows with a PowerShell script.
October 26, 2023
The Veracode CLI now supports Windows
You can now install the Veracode CLI on Windows with Chocolatey.
June 28, 2023
Introducing Veracode Fix
The veracode fix
command is a new generative AI feature of the Veracode CLI. It uses the results from a Veracode Pipeline Scan to generate suggested code fixes that you can apply to flaws in your application source code. This feature is currently only available in the Commercial Region. To get started, see the quickstart.
December 30, 2022
Released Veracode Container Security
Veracode Container Security is available. Container Security is a feature of the Veracode CLI that does the following:
- Scans for container vulnerabilities
- Scans for infrastructure as code misconfigurations
- Scans for improperly stored secrets
- Helps developers secure their cloud native applications
For more information about Veracode Container Security, contact your Veracode account representative.