DependencyCheck
DependencyCheck copied to clipboard
[FP]: graphql-java-servlet-14.0.0.jar flagged with cpe:2.3:a:graphql-java_project:graphql-java:14.0.0:*:*:*:*:*:*:*
Package URl
pkg:maven/com.graphql-java-kickstart/[email protected]
CPE
cpe:2.3:a:graphql-java_project:graphql-java:14.0.0:::::::*
CVE
CVE-2022-37734
ODC Integration
{"label"=>"Gradle Plugin"}
ODC Version
7.1.2
Description
graphql-java-servlet-14.0.0.jar flagged with cpe:2.3:a:graphql-java_project:graphql-java:14.0.0:::::::*
Maven Coordinates
<dependency>
<groupId>com.graphql-java-kickstart</groupId>
<artifactId>graphql-java-servlet</artifactId>
<version>14.0.0</version>
</dependency>
Suppression rule:
<suppress base="true">
<notes><![CDATA[
FP per issue #4853
]]></notes>
<packageUrl regex="true">^pkg:maven/com\.graphql-java-kickstart/graphql-java-servlet@.*$</packageUrl>
<cpe>cpe:/a:graphql-java_project:graphql-java</cpe>
</suppress>
Link to test results: https://github.com/jeremylong/DependencyCheck/actions/runs/3059562161
approved
Suppress rule has been added to the generatedSuppressions
branch.