Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add support for dependency-check-maven #91

Open
Fishbowler opened this issue Feb 5, 2024 · 1 comment
Open

Add support for dependency-check-maven #91

Fishbowler opened this issue Feb 5, 2024 · 1 comment

Comments

@Fishbowler
Copy link
Member

Add dependency-check-maven to POM, similar to Openfire's, allowing a vulnerability report to be easily generated

@Fishbowler
Copy link
Member Author

I've got a branch going, but it might be impossible to exclude vulnerabilities in the dependencies of the parent version of Openfire without naming each of them, even though they're provided rather than included.

There's certainly some way of autogenerating an exclusion doc in Openfire, publishing it as an artifact, but it's a lot of work for not a lot of gain.

🤔

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant