-
In the "Am I affected" section you mention:
- The reverse proxy configuration does not correctly overwrite X-Forwarded-For
What exactly is considered correctly overwritten? Am I affected when …
-
A dependency check as of Jan 12 2021 shows vulnerabilities in package dependencies (both direct and indirect). Most of these vulnerabilities are fixed in later versions, and can therefore be addresse…
-
### Current Behavior
We see heavy Disk usage from a default installation of Deptrack:
![image](https://github.com/DependencyTrack/dependency-track/assets/15243394/0bb21f6f-1284-4125-ab14-6a24eada36a…
-
## CVE-2020-35508 - Medium Severity Vulnerability
Vulnerable Library - linuxlinux-4.19.237
The Linux Kernel
Library home page: https://mirrors.edge.kernel.org/pub/linux/kernel/v4.x/?wsslib=linux
Fo…
-
I did some hard science: http://jsperf.com/deckardcain-string-shortening/3
I think we should change flow to this:
1. run with short string (maybe not all tests)
2. when no match, continue tests, bu…
-
### 🐛 Describe the bug
Hi!
> CMake supports `CUDAToolkit_ROOT` being a list of directories to search so you can add each of the splayed directories to that CMake variable to find each subcompone…
-
### Why it needs to get done
As part of the vulnerability identification, the Analytics team must scan the mlflow-operator charm for vulnerabilities.
### What needs to get done
1. Following t…
-
We use a repository as a transparent proxy for NPM, whereby we only talk to that proxy, and it serves up a package installed directly into that repository, if one exists, or falls back to querying glo…
-
Coverity is raising security issues for TrustManager in highlighted code below
Insecure SSL/TLS: bad TrustManager | High impact security | generatedChild/src/main/java/com/amdocs/oss/sfo/servi…
-
### Why it needs to get done
As part of the vulnerability identification, the Analytics team must scan the CKF charms for vulnerabilities.
### What needs to get done
1. Following the instruct…