Uploaded image for project: 'Yetus'
  1. Yetus
  2. YETUS-441

Add a precommit check for known CVEs from dependencies

    XMLWordPrintableJSON

Details

    • New Feature
    • Status: Patch Available
    • Major
    • Resolution: Unresolved
    • None
    • None
    • Precommit
    • None

    Description

      Add in a precommit test that makes use of The OWASP Dependency Check to look for known bad dependencies.

      there's a maven plugin, ant task, and command line tool. So we should be able to build similar support to what we have for RAT.

      Attachments

        1. YETUS-441.3.patch
          21 kB
          Sean Busbey
        2. YETUS-441.2.patch
          21 kB
          Sean Busbey
        3. YETUS-441.1.patch
          17 kB
          Sean Busbey
        4. YETUS-441.008.patch
          24 kB
          Allen Wittenauer
        5. YETUS-441.007.patch
          23 kB
          Allen Wittenauer
        6. YETUS-441.006.patch
          23 kB
          Allen Wittenauer
        7. YETUS-441.005.patch
          23 kB
          Allen Wittenauer
        8. YETUS-441.004.patch
          23 kB
          Allen Wittenauer
        9. YETUS-441.0.patch
          16 kB
          Sean Busbey
        10. dependency-check-suppression.xml
          5 kB
          Sean Busbey

        Issue Links

          Activity

            People

              busbey Sean Busbey
              busbey Sean Busbey
              Votes:
              0 Vote for this issue
              Watchers:
              7 Start watching this issue

              Dates

                Created:
                Updated: