DependencyTrack / dependency-track

Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
https://dependencytrack.org/
Apache License 2.0
2.72k stars 580 forks source link

After the Vulnerability Details Affected Components were updated, the cpe was gone #3879

Open x-zim opened 5 months ago

x-zim commented 5 months ago

Current Behavior

cpe-1 Perform the update and the query component is gone again.

Steps to Reproduce

1.Create Vulnerability -> Affected Components,add a cpe 2.After I Add Affected Component, I perform an update and the cpe is gone

Expected Behavior

After the update, the previous cpe should be displayed

Dependency-Track Version

4.11.0

Dependency-Track Distribution

Container Image

Database Server

PostgreSQL

Database Server Version

No response

Browser

Google Chrome

Checklist

KS-DR commented 3 days ago

Can you confirm, that this is still an issue? I had the same problem, but tested it today in v4.12.1 and this seems to be fixed.