Re: Vuln Scanner for Web App Source Code

For commercial tool, can try SPI dynamics. Acquired by HP some time ago.

This might be a bit of a dumb question, but does anyone know of a good Vulnerability Scanner for finding faults in the actual Source Code of the Web App? Or can this task can only be done by hand?

Any feedback on this is highly appreciative