public void foo() {
// ...
String baseQuery = "SELECT name FROM users where id = ";
for (int i = 0; i < 20; i++) {
String query = baseQuery.concat("" + i);
Statement st = conn.createStatement();
ResultSet rs = st.executeQuery(query); // Noncompliant
// iterate through the java resultset
while (rs.next()) {
String name = rs.getString("name");
System.out.println(name);
}
st.close();
}
// ...
}