New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Log when non-base suppressions rules are unused #4709
Commits on Jul 27, 2022
-
Configuration menu - View commit details
-
Copy full SHA for 47f5f5a - Browse repository at this point
Copy the full SHA 47f5f5aView commit details -
make suppression rules collection a singleton so when rules run multi…
…ple times we can track if a rule was used
Configuration menu - View commit details
-
Copy full SHA for 679b0ab - Browse repository at this point
Copy the full SHA 679b0abView commit details
Commits on Jul 28, 2022
-
Configuration menu - View commit details
-
Copy full SHA for 0c3c3f3 - Browse repository at this point
Copy the full SHA 0c3c3f3View commit details -
Configuration menu - View commit details
-
Copy full SHA for 9a9a8f7 - Browse repository at this point
Copy the full SHA 9a9a8f7View commit details -
Configuration menu - View commit details
-
Copy full SHA for 6ed4062 - Browse repository at this point
Copy the full SHA 6ed4062View commit details
Commits on Aug 17, 2022
-
Configuration menu - View commit details
-
Copy full SHA for 5bc821b - Browse repository at this point
Copy the full SHA 5bc821bView commit details -
Bump ossindex-service-client from 1.8.1 to 1.8.2
Bumps ossindex-service-client from 1.8.1 to 1.8.2. --- updated-dependencies: - dependency-name: org.sonatype.ossindex:ossindex-service-client dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com>
Configuration menu - View commit details
-
Copy full SHA for ea4662c - Browse repository at this point
Copy the full SHA ea4662cView commit details -
Extend Quarkus Liquibase pattern
This extends the existing regex to also cover all Quarkus Liquibase artifacts. See https://regex101.com/r/2xOJwo/1 for a regex test. Fixes #4630
Configuration menu - View commit details
-
Copy full SHA for f255f92 - Browse repository at this point
Copy the full SHA f255f92View commit details -
Configuration menu - View commit details
-
Copy full SHA for 0d6504e - Browse repository at this point
Copy the full SHA 0d6504eView commit details -
Apply suggestions from code review
Co-authored-by: Hans Aikema <aikebah-github@aikebah.net>
Configuration menu - View commit details
-
Copy full SHA for 8dc569c - Browse repository at this point
Copy the full SHA 8dc569cView commit details -
Configuration menu - View commit details
-
Copy full SHA for 7e32b9d - Browse repository at this point
Copy the full SHA 7e32b9dView commit details -
Configuration menu - View commit details
-
Copy full SHA for cc66a98 - Browse repository at this point
Copy the full SHA cc66a98View commit details -
Bump maven-reporting-api from 3.1.0 to 3.1.1
Bumps [maven-reporting-api](https://github.com/apache/maven-reporting-api) from 3.1.0 to 3.1.1. - [Release notes](https://github.com/apache/maven-reporting-api/releases) - [Commits](apache/maven-reporting-api@maven-reporting-api-3.1.0...maven-reporting-api-3.1.1) --- updated-dependencies: - dependency-name: org.apache.maven.reporting:maven-reporting-api dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com>
Configuration menu - View commit details
-
Copy full SHA for 64e2a4a - Browse repository at this point
Copy the full SHA 64e2a4aView commit details -
Bump postgresql from 42.4.0 to 42.4.1
Bumps [postgresql](https://github.com/pgjdbc/pgjdbc) from 42.4.0 to 42.4.1. - [Release notes](https://github.com/pgjdbc/pgjdbc/releases) - [Changelog](https://github.com/pgjdbc/pgjdbc/blob/master/CHANGELOG.md) - [Commits](pgjdbc/pgjdbc@REL42.4.0...REL42.4.1) --- updated-dependencies: - dependency-name: org.postgresql:postgresql dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com>
Configuration menu - View commit details
-
Copy full SHA for 7952bb4 - Browse repository at this point
Copy the full SHA 7952bb4View commit details -
Configuration menu - View commit details
-
Copy full SHA for a6927ad - Browse repository at this point
Copy the full SHA a6927adView commit details -
Bump maven-site-plugin from 3.12.0 to 3.12.1
Bumps [maven-site-plugin](https://github.com/apache/maven-site-plugin) from 3.12.0 to 3.12.1. - [Release notes](https://github.com/apache/maven-site-plugin/releases) - [Commits](apache/maven-site-plugin@maven-site-plugin-3.12.0...maven-site-plugin-3.12.1) --- updated-dependencies: - dependency-name: org.apache.maven.plugins:maven-site-plugin dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com>
Configuration menu - View commit details
-
Copy full SHA for 807a813 - Browse repository at this point
Copy the full SHA 807a813View commit details -
Configuration menu - View commit details
-
Copy full SHA for 169d975 - Browse repository at this point
Copy the full SHA 169d975View commit details -
add yarn.lock to mixedLangSet to enable yarnAuditAnalyzer
yarnAuditAnalyzer cannot be enabled if we don't have yarn.lock is added to mixedLangSet.
Configuration menu - View commit details
-
Copy full SHA for 82b046a - Browse repository at this point
Copy the full SHA 82b046aView commit details -
Update maven/src/main/java/org/owasp/dependencycheck/maven/BaseDepend…
…encyCheckMojo.java
Configuration menu - View commit details
-
Copy full SHA for e3396cc - Browse repository at this point
Copy the full SHA e3396ccView commit details -
Configuration menu - View commit details
-
Copy full SHA for db56450 - Browse repository at this point
Copy the full SHA db56450View commit details -
Configuration menu - View commit details
-
Copy full SHA for 0167809 - Browse repository at this point
Copy the full SHA 0167809View commit details
Commits on Aug 18, 2022
-
Update core/src/main/java/org/owasp/dependencycheck/analyzer/Abstract…
…SuppressionAnalyzer.java Co-authored-by: Hans Aikema <aikebah-github@aikebah.net>
Configuration menu - View commit details
-
Copy full SHA for c0ce698 - Browse repository at this point
Copy the full SHA c0ce698View commit details -
Update core/src/main/java/org/owasp/dependencycheck/analyzer/Abstract…
…SuppressionAnalyzer.java Co-authored-by: Hans Aikema <aikebah-github@aikebah.net>
Configuration menu - View commit details
-
Copy full SHA for 071dde7 - Browse repository at this point
Copy the full SHA 071dde7View commit details -
Configuration menu - View commit details
-
Copy full SHA for 58ef8c7 - Browse repository at this point
Copy the full SHA 58ef8c7View commit details -
Configuration menu - View commit details
-
Copy full SHA for 7e36392 - Browse repository at this point
Copy the full SHA 7e36392View commit details -
Configuration menu - View commit details
-
Copy full SHA for 596b237 - Browse repository at this point
Copy the full SHA 596b237View commit details