File tree Expand file tree Collapse file tree 1 file changed +3
-11
lines changed Expand file tree Collapse file tree 1 file changed +3
-11
lines changed Original file line number Diff line number Diff line change 99 <cpe >cpe:/a:utils_project:utils</cpe >
1010 <cpe >cpe:/a:processing:processing</cpe >
1111 </suppress >
12- <suppress >
13- <notes ><![CDATA[
14- file name: graphql-java-annotations-9.1.jar
15- ]]> </notes >
16- <packageUrl regex =" true" >^pkg:maven/io\.github\.graphql\-java/graphql\-java\-annotations@.*$
17- </packageUrl >
18- <cpe >cpe:/a:graphql-java:graphql-java</cpe >
19- </suppress >
20- <suppress until =" 2023-11-30Z" >
12+ <suppress until =" 2023-12-31Z" >
2113 <notes ><![CDATA[
2214 This vulnerability is disputed, with the argument that SSL configuration is the responsibility of the client rather
2315 than the transport. The change in default is under consideration for the next major Netty release, revisit then.
2921 <packageUrl regex =" true" >^pkg:maven/io\.netty/netty.*@.*$</packageUrl >
3022 <vulnerabilityName >CVE-2023-4586</vulnerabilityName >
3123 </suppress >
32- <suppress until =" 2023-11-30Z " >
24+ <suppress until =" 2023-12-31Z " >
3325 <notes ><![CDATA[
3426 This CVE is declared fixed from 9.4.52, but the vuln db is not reflecting that. Suppress that specific version until
3527 db is updated.
3931 <
packageUrl regex =
" true" >^pkg:maven/org\.eclipse\.jetty/jetty\
[email protected] \..*$</
packageUrl >
4032 <vulnerabilityName >CVE-2023-36479</vulnerabilityName >
4133 </suppress >
42- <suppress until =" 2023-11-30Z " >
34+ <suppress until =" 2023-12-31Z " >
4335 <notes ><![CDATA[
4436 file name: jackson-databind-2.15.2.jar
4537 ]]> </notes >
You can’t perform that action at this time.
0 commit comments