Dependency Check

Dependency-check is a utility that identifies project dependencies and checks if there are any known, publicly disclosed, vulnerabilities. Currently Java, .NET, and Python projects are supported. This tool can be part of a solution to the OWASP Top 10 2013 A9 - Using Components with Known Vulnerabilities.


Showing 1-51 of 248 topics
OWASP dependency-check 3.0.0 released! Jeremy Long 10/16/17
OWASP dependency-check 2.1.1 released! Jeremy Long 10/16/17
OWASP dependency-check 2.0.1 released! Dependency Check 8/15/17
OWASP dependency-check 2.1.0 released! Jeremy Long 7/25/17
OWASP dependency-check 2.0.1 released! Jeremy Long 7/23/17
OWASP dependency-check 2.0.0 released! Jeremy Long 7/4/17
OWASP dependency-check 1.4.5 released! Jeremy Long 1/23/17
OWASP dependency-check 1.4.4 released! Jeremy Long 11/7/16
OWASP dependency-check 1.4.3 released! Jeremy Long 9/6/16
OWASP dependency-check 1.4.2 released! Jeremy Long 8/3/16
OWASP dependency-check 1.3.3 released! Jeremy Long 5/25/16
OWASP dependency-check 1.3.1 Released! Jeremy Long 9/21/15
dependency-check 1.3.0 released! Jeremy Long 8/5/15
dependency-check 1.2.11 released! Jeremy Long 5/13/15
dependency-check 1.2.10 released! Jeremy Long 4/13/15
dependency-check 1.2.9 released Jeremy Long 3/7/15
dependency-check 1.2.8 released! Jeremy Long 12/28/14
dependency-check 1.2.7 released! Jeremy Long 12/9/14
dependency-check 1.2.6 released! Jeremy Long 11/17/14
dependency-check 1.2.5 released Jeremy Long 9/17/14
dependency-check 1.2.3 released Jeremy Long 6/28/14
dependency-check 1.2.1 released Jeremy Long 5/10/14
dependency-check 1.2.0 released Jeremy Long 4/29/14
dependency-check-1.1.4 released Jeremy Long 3/31/14
dependency-check 1.1.3 released Jeremy Long 3/11/14
dependency-check 1.1.2 released Jeremy Long 3/4/14
dependency-check 1.0.8 released Jeremy Long 2/10/14
dependency-check 1.1.1 released Jeremy Long 1/30/14
dependency-check v1.0.7 released Jeremy Long 1/12/14
dependency-check version 1.0.2 released Jeremy Long 9/3/13
dependency-check 1.0.1 Jeremy Long 8/10/13
OWASP Dependency-Check SonarQube Plugin v1.1.0 Released Steve Springett 10/15/17
How exactly does Dependency Check identify external dependencies? pentester 10/14/17
isNspDisabled available for a Jenkins pipeline job? Dr Paul 10/8/17
Dependency-Track v3 Updates Steve Springett 10/8/17
Suppression File doesn't appear to work James Lorenzen 10/6/17
Confusing Potential False Negative for git James Lorenzen 10/6/17
integrated security Nick Harvey 10/4/17
Overriding evidence/ finetuning evidence sarma....@gmail.com 10/3/17
[error] - DB update issue with NVD Update Only Jenkins plugin Piyush Mittal 8/31/17
false positive in case of same dependency coming from multiple places Piyush Mittal 8/31/17
Exception ArchiveAnalyzer could not be instantiated Max 8/28/17
Unable to run Dependency Check CLI due to org.xml.sax.SAXParseException; in version 2.1.1 sarma....@gmail.com 8/25/17
mysql-connector-java shows wrong vulnerabilities? Shumpei Akai 8/24/17
custom report name Piyush Mittal 8/23/17
Understanding proxy config Kaj Hejer 8/21/17
"HTTP/1.0 403 Forbidden" from proxy after upgrading to 2.1.0 Kaj Hejer 8/19/17
determining minimum version for a dependency cited in multiple CVEs after running analysis Arbi Sookazian 8/19/17
What determines which CVEs are populated in dc.h2.db? Arbi Sookazian 8/10/17
Disabling nodeJS check doesn't seem to work Jim Sellers 8/5/17
identifying false positives Arbi Sookazian 8/5/17
More topics »