dependency-check 1.2.1 released

36 views
Skip to first unread message

Jeremy Long

unread,
May 10, 2014, 1:15:53 PM5/10/14
to dependen...@googlegroups.com
All,

The dependency-check team is proud to announce another release - 1.2.1! The new version has been posted to Maven Central, Bintray, and to Jenkins. I would highly recommend upgrading to the new version as both false positives and false negatives have been reduced.

Change Log
  • Fixed several false positive and false negatives
    • Some CVEs were not reported correctly, expect this new version to increase the number of CVEs reported
  • Suppression files can now be loaded via the classpath
    • You can place the suppression file in the classpath and then reference the file by name in the configuration
  • Fixed links in the reports to the NVD
  • Updated project documentation
  • Several minor bug fixes
Thanks to all that have contributed to this project - I truly appreciate the support. Please report any bugs and false positives as github issues.

Best Regards,

Jeremy
Reply all
Reply to author
Forward
0 new messages