We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 525ad96 commit ff46b13Copy full SHA for ff46b13
1 file changed
etc/dependency-check-suppression.xml
@@ -100,6 +100,13 @@ https://github.com/jeremylong/DependencyCheck/issues/7019
100
<packageUrl regex="true">^pkg:maven/org\.graalvm\.compiler/compiler@.*$</packageUrl>
101
<vulnerabilityName>CVE-2024-21138</vulnerabilityName>
102
</suppress>
103
+<suppress>
104
+ <notes><![CDATA[
105
+ file name: compiler-23.1.0.jar
106
+ ]]></notes>
107
+ <packageUrl regex="true">^pkg:maven/org\.graalvm\.compiler/compiler@.*$</packageUrl>
108
+ <vulnerabilityName>CVE-2024-21235</vulnerabilityName>
109
+</suppress>
110
111
<!--
112
This is a FP. We have upgrade jgit to a fixed version, but it is still getting flagged.
0 commit comments