WIP: Project Reference Scanning
Pre-release
Pre-release
digitalcoyote
released this
31 Jan 03:43
·
213 commits
to master
since this release
Known issues in this one:
- It does scan the project references, but it reports them incorrectly as originating in the top level project
- Vulnerabilities for referenced projects that have the same id (but different version) as a package in the top level project are reported regardless of vulnerable status