New version! Security Assessment for SonarQube Cloud™ 1.8
August 2, 2026
The new version 1.8 of our security plugin for SonarQube Cloud is now available. The latest update of Security Assessment for SonarQube Cloud comes packed with important new features to strengthen the security of your developments and simplify compliance with the most demanding standards.
New Security Standards
We have expanded our coverage by incorporating new industry-leading reference frameworks:
OWASP ASVS 5.0.0: The latest version of the Application Security Verification Standard.
CISA KEV: Catalog of Known Exploited Vulnerabilities.
ASD STIG: Security Technical Implementation Guides.
CASA: We have also added support for the Cloud Application Security Assessment standard.
2025 Updates
We stay up to date with the latest threats by updating the reports for:
OWASP Top 10: 2025 Edition.
CWE Top 25: 2025 Edition (including the On the Cusp report).
Experience and Reporting Improvements
Pull Request Support: You can now generate security reports directly on your PRs, allowing you to detect risks before merging code.
New Severities: We have adapted the reports to use the standard severity system (Blocker, High, Medium, Low, and Info), making it easier to read and prioritize findings.
Download the New Version
You can download this new version 1.8 from the bitegarden Marketplace .
bitegarden team
Helping companies to develop better software