dep-scan icon indicating copy to clipboard operation
dep-scan copied to clipboard

OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container ima...

Results 73 dep-scan issues
Sort by recently updated
recently updated
newest added

### Request Description Hello, I'm wondering how to add custom entries to the VDB database so that depscan will find these custom vulnerable dependencies when scanning. I see that VDB5...

enhancement

### Request Description OSV.dev is asking future additions to https://github.com/google/osv.dev?tab=readme-ov-file#third-party-tools-and-integrations to consider [adopting OpenSSF Scorecard](https://scorecard.dev/#using-the-github-action) and as a part of that, we're also making the request of legacy entrants. We...

enhancement

### Expected Behavior Scanning java files in file system. ### Actual Behavior BUILD FAILED in 361ms 1. Check if the correct version of java and gradle are installed and available...

bug