mirror of
https://github.com/ysoftdevs/DependencyCheck.git
synced 2026-03-26 02:51:27 +01:00
Rather than an explicit StringBuilder, why not simply an implicit one?
This commit is contained in:
@@ -835,10 +835,7 @@ public class JarAnalyzer extends AbstractFileTypeAnalyzer {
|
|||||||
}
|
}
|
||||||
|
|
||||||
if (pos > 0) {
|
if (pos > 0) {
|
||||||
final StringBuilder sb = new StringBuilder(pos + 3);
|
desc = desc.substring(0, pos) + "...";
|
||||||
sb.append(desc.substring(0, pos));
|
|
||||||
sb.append("...");
|
|
||||||
desc = sb.toString();
|
|
||||||
}
|
}
|
||||||
dependency.getProductEvidence().addEvidence(source, key, desc, Confidence.LOW);
|
dependency.getProductEvidence().addEvidence(source, key, desc, Confidence.LOW);
|
||||||
dependency.getVendorEvidence().addEvidence(source, key, desc, Confidence.LOW);
|
dependency.getVendorEvidence().addEvidence(source, key, desc, Confidence.LOW);
|
||||||
|
|||||||
Reference in New Issue
Block a user