Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

add option to verify <dependencyManagement/> section in POM #1552

Merged
merged 5 commits into from Jan 1, 2019
Merged

add option to verify <dependencyManagement/> section in POM #1552

merged 5 commits into from Jan 1, 2019

Conversation

guidoschreuder
Copy link
Contributor

@guidoschreuder guidoschreuder commented Nov 6, 2018

Fixes Issue #1551

Description of Change

This PR adds the option to also scan the dependencyManagement section of POM's for vulnerablilities

Have test cases been added to cover the new functionality?

Yes

Note

consider this a rough draft or proof-of-concept, i'm not very familiar with the codebase, just putting this out there for review and commenting

@guidoschreuder
Copy link
Contributor Author

i've done some manual testing with both 'check' and 'aggregate' on project and all seems to work

for good measure it should probably need an actual test-case

@jeremylong jeremylong merged commit 60d2d86 into jeremylong:master Jan 1, 2019
@jeremylong
Copy link
Owner

Truly appreciate the PR .- thanks!

@guidoschreuder guidoschreuder deleted the enable-dependency-management-scanning branch January 2, 2019 10:17
@lock lock bot locked and limited conversation to collaborators Apr 4, 2020
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants