mirror of
https://github.com/ysoftdevs/DependencyCheck.git
synced 2026-03-25 10:32:00 +01:00
updated as this would end up similiar to #933
This commit is contained in:
@@ -269,6 +269,7 @@ public class NspAnalyzer extends AbstractFileTypeAnalyzer {
|
|||||||
nodeModule.setEcosystem(DEPENDENCY_ECOSYSTEM);
|
nodeModule.setEcosystem(DEPENDENCY_ECOSYSTEM);
|
||||||
//this is virtual - the sha1 is purely for the hyperlink in the final html report
|
//this is virtual - the sha1 is purely for the hyperlink in the final html report
|
||||||
nodeModule.setSha1sum(Checksum.getSHA1Checksum(String.format("%s:%s", name, version)));
|
nodeModule.setSha1sum(Checksum.getSHA1Checksum(String.format("%s:%s", name, version)));
|
||||||
|
nodeModule.setMd5sum(Checksum.getMD5Checksum(String.format("%s:%s", name, version)));
|
||||||
nodeModule.addEvidence(EvidenceType.PRODUCT, "package.json", "name", name, Confidence.HIGHEST);
|
nodeModule.addEvidence(EvidenceType.PRODUCT, "package.json", "name", name, Confidence.HIGHEST);
|
||||||
nodeModule.addEvidence(EvidenceType.VENDOR, "package.json", "name", name, Confidence.HIGH);
|
nodeModule.addEvidence(EvidenceType.VENDOR, "package.json", "name", name, Confidence.HIGH);
|
||||||
nodeModule.addEvidence(EvidenceType.VERSION, "package.json", "version", version, Confidence.HIGHEST);
|
nodeModule.addEvidence(EvidenceType.VERSION, "package.json", "version", version, Confidence.HIGHEST);
|
||||||
|
|||||||
Reference in New Issue
Block a user