StringBuffers can grow quite a lot, and so may become a source of memory leak (if the owning class has a long life time). Example :
class Foo {
  private StringBuffer memoryLeak;
}

This rule is deprecated, use {rule:squid:S1149} instead.