murphysec-jetbrains-plugin icon indicating copy to clipboard operation
murphysec-jetbrains-plugin copied to clipboard

MurphySec plugin for JetBrains IDEs, identify and fix open source vulnerabilities in your project. 墨菲安全推出的一款 JetBrains IDE 插件,可以用来识别并修复项目中的开源组件漏洞

Results 9 murphysec-jetbrains-plugin issues
Sort by recently updated
recently updated
newest added

![image](https://user-images.githubusercontent.com/83815270/192209495-9fee0b5c-1f06-4f2a-8aee-1fa71fa41a10.png)

选中问题组件,选择快速修复,出现MurphySec消息通知: 修复失败,未找到mysql:mysql-connector-java组件5.1.30版本的定义位置

good first issue

![image](https://user-images.githubusercontent.com/31611137/179129603-aec5d2d6-e46f-405a-b159-e1a9fd8ae9b4.png) 这个提示3.7 ![image](https://user-images.githubusercontent.com/31611137/179129715-5633de09-d7a4-41dd-a97f-4bc0a6065ebd.png) 这个提示3.10 修复了最高的 还是会这样提示

org.springframework.security.oauth:[email protected] 在不同项目,检测结果一个有漏洞,一个没提示漏洞 没oauth2漏洞的项目https://gitee.com/zlt2000/microservices-platform.git 没提示oauth有漏洞。 ![](https://files.catbox.moe/07oj44.png) 提示oauth有漏洞 ![](https://files.catbox.moe/2qg6ed.png)

![image](https://github.com/murphysecurity/murphysec-jetbrains-plugin/assets/11525359/aa11a055-0340-4d82-bc38-179f7064da3e) pom如下 ``` 4.0.0 eee eeeeee 1.12.31-SNAPSHOT-S org.springframework.boot spring-boot-starter-parent 2.3.12.RELEASE 11 1.4.10 2.3.12.RELEASE ${java.version} ${java.version} UTF-8 org.springframework.boot spring-boot-starter org.springframework.boot spring-boot-starter-mail cn.bobmao.pro expression 1.2.77-SNAPSHOT org.springframework.cloud spring-cloud-starter-openfeign commons-fileupload commons-fileupload 1.5 org.springframework.security spring-security-crypto...

![image](https://github.com/murphysecurity/murphysec-jetbrains-plugin/assets/8519834/6d8a1ab1-af00-460a-a27c-6b64c0434464) 取消之后,再次打开设置页面,还是选中状态

多个项目一起如何扫描 ![image](https://user-images.githubusercontent.com/42510972/234838729-3a914e7a-38cf-4913-b94d-19264365de6d.png)

![lQLPJw-x_v7pxQzNAb_NA8-wctUywF_ACh4Diu8FcQBHAA_975_447](https://user-images.githubusercontent.com/40692900/205911658-70b539ba-ae96-4438-b20a-6d632241d248.png) 按照修复提示进行了版本升级,重新检测这个组件还是依赖了[email protected]这个有漏洞的组件,这个修复方案是怎么得出来的???新检测这个组件还是依赖了[email protected]这个有漏洞的组件,这个修复方案是怎么得出来的??? ![image](https://user-images.githubusercontent.com/40692900/205912118-e4429dcf-a419-41a9-bfbb-525234c15ac9.png) [README.md](https://github.com/murphysecurity/murphysec-jetbrains-plugin/files/10166409/README.md)

![image](https://github.com/murphysecurity/murphysec-jetbrains-plugin/assets/35017668/8b48d772-43e9-4f4f-817e-54324c116b82)