From 6273ea758bc443cf8d454b9df181ed521da697c3 Mon Sep 17 00:00:00 2001 From: Jeremy Long Date: Sun, 13 Oct 2013 14:03:52 -0400 Subject: [PATCH] added ftp:ftp as a false positive for Java projects Former-commit-id: 3382b8413c0ba3af6370420e4e9279da66646c4d --- .../owasp/dependencycheck/analyzer/FalsePositiveAnalyzer.java | 1 + 1 file changed, 1 insertion(+) diff --git a/dependency-check-core/src/main/java/org/owasp/dependencycheck/analyzer/FalsePositiveAnalyzer.java b/dependency-check-core/src/main/java/org/owasp/dependencycheck/analyzer/FalsePositiveAnalyzer.java index 32082e0b5..9c64495a6 100644 --- a/dependency-check-core/src/main/java/org/owasp/dependencycheck/analyzer/FalsePositiveAnalyzer.java +++ b/dependency-check-core/src/main/java/org/owasp/dependencycheck/analyzer/FalsePositiveAnalyzer.java @@ -279,6 +279,7 @@ public class FalsePositiveAnalyzer extends AbstractAnalyzer { || i.getValue().startsWith("cpe:/a:file:file") || i.getValue().startsWith("cpe:/a:mozilla:mozilla") || i.getValue().startsWith("cpe:/a:cvs:cvs") + || i.getValue().startsWith("cpe:/a:ftp:ftp") || i.getValue().startsWith("cpe:/a:ssh:ssh")) && dependency.getFileName().toLowerCase().endsWith(".jar")) { itr.remove();