Bumps org.owasp:dependency-check-maven from 10.0.1 to 10.0.2.
Release notesSourced from org.owasp:dependency-check-maven's releases.
ChangelogVersion 10.0.2
Refer to the CHANGELOG.md for information about improvements and upgrade notes.
Sourced from org.owasp:dependency-check-maven's changelog.
CommitsVersion 10.0.2 (2024-07-06)
Mandatory Upgrade - due to older versions of dependency-check causing numerous, spurious requests that end in processing failures, this upgrade is mandatory so that the NVD can differentiate valid requests and block the old clients.
- build(deps): bump open-vulnerability-clients (#6810)
- fix(db): #6788 removing redundant db index "idxVulnerability" on "vulnerability.cve" (#6807)
- docs: Further improve formatting and docs of H2 database caching strats (#6804)
- fix: update_vulnerability in dbStatements_oracle.properties (#6803)
- fix: fix NPE (#6778)
- fix: add hint to resolve false negative (#6802)
- chore: update configure (#6794)
See the full listing of changes.
b7b030cbuild: prepare release v10.0.2f22ebf1docs: mandatory upgrade noticebcbbe1cdocs: release 10.0.21b3398dbuild(deps): bump open-vulnerability-clients (#6810)06e39fcfix(db): #6788 removing redundant db index "idxVulnerability" on "vulnerabili...4926cd2build(deps): bump org.apache.maven.plugins:maven-dependency-plugin from 3.7.0...3bfb398docs: Further improve formatting and docs of H2 database caching strats (#6804)51f84fffix: update_vulnerability in dbStatements_oracle.properties (#6803)3f0ffa9fix: fix NPE (#6778)9fbb996fix: add hint to resolve false negative (#6802)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)