dep-scan
dep-scan copied to clipboard
OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container ima...
### Request Description Hello, I'm wondering how to add custom entries to the VDB database so that depscan will find these custom vulnerable dependencies when scanning. I see that VDB5...
### Request Description OSV.dev is asking future additions to https://github.com/google/osv.dev?tab=readme-ov-file#third-party-tools-and-integrations to consider [adopting OpenSSF Scorecard](https://scorecard.dev/#using-the-github-action) and as a part of that, we're also making the request of legacy entrants. We...
### Expected Behavior Scanning java files in file system. ### Actual Behavior BUILD FAILED in 361ms 1. Check if the correct version of java and gradle are installed and available...