Sébastien Delcoigne
Sébastien Delcoigne
Simple proposition for the NVD disclaimer issue. Most of the changes need to happen in the front-end.
The tagging format on the particular repo given as example is adding a 'v' before the version number in the tags: **v**1.7.17 rather than 1.7.17. Since the pURL is referencing...
If I create a DependencyTrack component with the following pURL `pkg:github/dependencytrack/[email protected]` I get a correct result: 
I have noticed that updating the purl doesn't correct the problem immediately indeed. The outdated character of a dependency is defined during analysis. You may have to trigger one (I...
@g-sahil22 any progress on that issue ? Did you try to trigger a new analysis and did it update the version accordingly ?
The commit you mention is signed off. If you need to find a commit hash from before the rebase check git reflog. Then you can git reset --hard to that...
I'll have a look.
@nscuro I am currently working on fixing some tests. Do not hesitate to give me any remarks on the proposed solution. I have taken some initiatives that differ a bit...
@nscuro PR ready for second review round
No problem. Take your time.