Closed mirabilos closed 2 weeks ago
Working as expected - this is not a bug, rather this is a false positive. See
https://jeremylong.github.io/DependencyCheck/general/internals.html https://jeremylong.github.io/DependencyCheck/general/thereport.html https://jeremylong.github.io/DependencyCheck/general/suppression.html
If you are going to report this again after I close this issue - please use the false positive template.
Describe the bug I get a bogus report:
The CPE is wrong. Jobs-Plugin is https://github.com/mrbobbybryant/Jobs-Plugin and a PHP project.
Version of dependency-check used
org.owasp:dependency-check-maven:9.1.0:aggregate
Log file There’s nothing in the full log that stands out, this is just a CPE mismapping issue. I can provide it on request if you really want it, but…