Commit Graph

  • 63e084f2e4 Bump jackson-databind from 2.9.7 to 2.12.7.1 in /test/resources dependabot/maven/test/resources/com.fasterxml.jackson.core-jackson-databind-2.12.7.1 dependabot[bot] 2022-11-16 11:34:03 +00:00
  • 73721bb457 Bump commons-collections from 3.2.1 to 3.2.2 in /test/resources dependabot/maven/test/resources/commons-collections-commons-collections-3.2.2 dependabot[bot] 2020-06-15 22:01:19 +00:00
  • fdd5b9f8d5 Fixed timestamp parsing master Šesták Vít 2020-01-31 13:25:16 +01:00
  • 822bb956d1 Fix outdated vulnerability database check Šesták Vít 2020-01-31 07:34:11 +01:00
  • c537a5c5c5 Adapt for new version of ODC database Šesták Vít 2020-01-31 02:07:08 +01:00
  • 52c3228ac3 Add support for newer ODC Šesták Vít 2020-01-31 00:53:40 +01:00
  • 237f6638a0 Revert "Added some tests" Šesták Vít 2020-01-24 12:26:41 +01:00
  • 70984229f0 Added some tests Šesták Vít 2020-01-23 10:02:26 +01:00
  • 2db75d0617 Switch to PostgreSQL Šesták Vít 2020-01-23 10:02:05 +01:00
  • 7dfe71b8b9 Added Maven internal dependencies to API Šesták Vít 2019-06-05 15:53:46 +02:00
  • f7d6fa0f8e Filter profiles on a better place Šesták Vít 2019-01-21 13:00:48 +01:00
  • 8077c249c9 Blacklist some directories as framework names Šesták Vít 2019-01-21 10:24:44 +01:00
  • 8b8c072510 Added support for scanning of non-JAR packages from Maven Šesták Vít 2018-10-22 12:49:17 +02:00
  • ef5d7e911d Update for support of ODC 3.3.2 Šesták Vít 2018-09-26 15:26:39 +02:00
  • 181a4c596c Adjusted formatting of library identifiers in vulnerability details Šesták Vít 2018-04-16 10:34:50 +02:00
  • a2a4ee01c7 Report proper error messages when filter is wrong project or wrong team Šesták Vít 2018-03-21 10:45:11 +01:00
  • e6e9d4c940 Added API endpoint for statistics. Šesták Vít 2018-03-21 10:11:48 +01:00
  • dcc109a729 Added support for scanning transitive dependencies for .NET libraries (except those with unlimited set of supported TMFs). Šesták Vít 2018-03-07 13:59:43 +01:00
  • d87535df84 Added warning for WebJars other than NPM. Šesták Vít 2018-03-02 15:57:42 +01:00
  • 15f8319de9 Added API for lisling vulnerabilities Šesták Vít 2018-03-02 07:43:07 +01:00
  • d56ffbccc6 Makes also working directory fixed for a single scan. Also, ODC path is resolved from working directory. As a result, one can atomically swap symlinks without affecting ongoing scans. Šesták Vít 2018-02-28 17:16:07 +01:00
  • bc2e6589fb Make ODC installation fixed during a single scan. As a result, one can atomically swap symlinks without affecting ongoing scans. Šesták Vít 2018-02-28 13:07:36 +01:00
  • 9836c5040f Fix support for empty CVSS score tags. Šesták Vít 2018-02-14 15:42:03 +01:00
  • e766abf38c Adapted for current ODC output format Šesták Vít 2018-02-14 09:21:42 +01:00
  • 8095deae70 Fixed handling of slightly diverging dependencies (e.g., different filename) when comparing scans. It used to be considered as two separate dependencies. This caused such dependencies to appear in both added and removed dependencies. Šesták Vít 2018-02-05 10:36:47 +01:00
  • d57b9aeb97 Added support for installed plugins in Maven scans. Šesták Vít 2017-12-20 15:06:12 +01:00
  • 5f9546934e When comparing, also list vulnerable dependencies Šesták Vít 2017-12-08 16:46:24 +01:00
  • 644bd3b539 Give more information when comparing commits. Šesták Vít 2017-12-08 15:58:08 +01:00
  • 9343619ca9 Initial support for virtual dependencies. Šesták Vít 2017-12-08 11:20:57 +01:00
  • 39ba123efc Added support for comparison of scans Šesták Vít 2017-12-08 10:18:25 +01:00
  • 2e21f78105 Added search for newer NuGet Šesták Vít 2017-11-15 16:28:31 +01:00
  • 0735ef5dd2 Added a minor comment Šesták Vít 2017-11-15 16:28:02 +01:00
  • 53890026b4 Removed unneeded library Šesták Vít 2017-10-16 16:56:57 +02:00
  • 65232504cb Updated confidence highlighting Šesták Vít 2017-10-16 09:24:55 +02:00
  • 2a95b07b54 Added more fail safety for vulnerability export. Šesták Vít 2017-10-11 16:54:25 +02:00
  • cdb31dcc4e Failsafe behavior for e-mail notifications. Šesták Vít 2017-10-11 15:48:20 +02:00
  • 8688ffd730 Added identifier confidence Šesták Vít 2017-10-09 15:46:23 +02:00
  • 1097e77d1c Preffer CPE identifiers Šesták Vít 2017-10-09 15:01:04 +02:00
  • e43cee7743 E-mail export: More descriptive error message when some vulnerability is missing Šesták Vít 2017-10-06 11:05:57 +02:00
  • 876086ce3f Fixed issue with newlines in JIRA export Šesták Vít 2017-10-06 10:06:53 +02:00
  • 629b42d943 Added throttling to JIRA in order to make it more server friendly Šesták Vít 2017-09-11 23:48:38 +02:00
  • a155188fec Fixed affected projects not appearing in some views Šesták Vít 2017-08-02 09:55:41 +02:00
  • f8e073cc54 .NET scans are now able to detect a missing library Šesták Vít 2017-08-01 16:24:18 +02:00
  • 4ac4b7b501 Improved main library detection for .NET Šesták Vít 2017-08-01 16:14:55 +02:00
  • 9a93099f60 Added config option for NuGet -source Šesták Vít 2017-08-01 16:04:19 +02:00
  • 22e4cff12b Added .NET scans. Šesták Vít 2017-08-01 15:28:34 +02:00
  • b23cc3e3dc Menu made smaller in order to better fit all the items Šesták Vít 2017-08-01 09:47:04 +02:00
  • 5534b442dc Removed a legacy buildfile Šesták Vít 2017-07-31 16:20:22 +02:00
  • bff5478355 Added a missing note for ODC config Šesták Vít 2017-07-31 16:19:49 +02:00
  • 2d1198d7cc Changed plot descriptions Šesták Vít 2017-07-31 16:19:28 +02:00
  • 0ec8928ff7 Moved Status to “…” Šesták Vít 2017-07-31 16:19:13 +02:00
  • 2049759430 Added new ODC scans for Java libraries. Those can scan even transitive dependencies and can be run before adding a new library to a project. Šesták Vít 2017-07-31 12:09:23 +02:00
  • bb0089cd97 Added forgotten file Šesták Vít 2017-06-28 10:49:29 +02:00
  • 420a765dc4 Added a proper error message for a missing library Šesták Vít 2017-06-28 09:15:55 +02:00
  • ffabc8a4e5 Added support for brand Šesták Vít 2017-06-21 13:06:35 +02:00
  • b00857368a Added throttling to reduce Bamboo peak load and number of concurrent connections Šesták Vít 2017-06-21 10:18:39 +02:00
  • c55c37fa9a Added a standalone page for library Šesták Vít 2017-06-20 01:16:32 +02:00
  • 2d0651cfc7 Minor hashes refactoring Šesták Vít 2017-06-19 13:09:17 +02:00
  • e732e2fbb9 Minor markup cleanup Šesták Vít 2017-06-19 10:53:49 +02:00
  • 74ab645475 Added list of all project, including those not included by the filter Šesták Vít 2017-06-15 17:30:15 +02:00
  • 79584020b2 Few library version bumps Šesták Vít 2017-05-28 23:06:56 +02:00
  • 70f263baaa Adjusted sorting Šesták Vít 2017-05-23 15:45:31 +02:00
  • ef1d434871 Fix for notifications: When a vulnerability reappears, it should not try to recreate a ticket for it Šesták Vít 2017-04-05 13:14:49 +02:00
  • 1a1fb0b9f5 Keep filter when switching between pages (mostly; does not work in Notifications and Status) Šesták Vít 2017-04-03 07:46:21 +02:00
  • 248f7baaab Show values in legend Šesták Vít 2017-03-31 16:48:30 +02:00
  • 6e7d87796a Updated expand/collapse symbols to be more mainstream. For example, they now match Wikipedia. Šesták Vít 2017-03-31 12:11:35 +02:00
  • c646dbf620 Added a quick workaround against multiplicities. Šesták Vít 2017-03-31 11:00:16 +02:00
  • 50c6b6daee Minor tuning for vulnerabilities for a library. Šesták Vít 2017-03-31 10:26:55 +02:00
  • abceccae5f Added test for team filter Šesták Vít 2017-03-31 09:08:36 +02:00
  • 6044947481 Added false positive heuristics. Šesták Vít 2017-03-31 09:05:45 +02:00
  • 10b3a3b6f1 Another set of UI improvements Šesták Vít 2017-03-21 16:54:20 +01:00
  • 134ec971a4 Minor style updates Šesták Vít 2017-03-21 13:03:02 +01:00
  • 5fb632d432 Added some expand symbols Šesták Vít 2017-03-21 08:57:33 +01:00
  • e757485c84 Added explanation for evidence. Šesták Vít 2017-03-20 17:15:00 +01:00
  • 5fd5c6d974 Added license Šesták Vít 2017-03-20 17:14:30 +01:00
  • b33f8e44ca Fixed severity column wrapping Šesták Vít 2017-03-20 16:51:23 +01:00
  • a08b0ceabf Filter empty paragraphs Šesták Vít 2017-03-20 16:44:45 +01:00
  • 41b4873847 Major vulnerable libraries UI redesign Šesták Vít 2017-03-20 14:34:34 +01:00
  • 5d1280e6c7 Removed an extra file Šesták Vít 2017-03-16 17:25:50 +01:00
  • 81e757d04d More friendly filter Šesták Vít 2017-03-16 17:24:54 +01:00
  • d45c84b690 Sort teams alphabetically Šesták Vít 2017-03-16 17:04:18 +01:00
  • 31dbee77d5 Changed order of menu items in order to make the most important first Šesták Vít 2017-03-16 16:57:51 +01:00
  • c1be908990 Added detailed list of dependencies Šesták Vít 2017-03-03 15:20:38 +01:00
  • 8f7f5d15ee Removed some garbage Šesták Vít 2017-03-01 15:50:21 +01:00
  • 79f7cb4c9a Use text/plain for hygiene. Šesták Vít 2017-03-01 15:49:22 +01:00
  • 81769c8309 Nice progressbar for loading Šesták Vít 2017-03-01 15:48:41 +01:00
  • 90f785b865 Lazy-load of dependency details Šesták Vít 2017-03-01 15:18:41 +01:00
  • 87ba3947ca Fixed order of identifiers Šesták Vít 2017-03-01 13:21:08 +01:00
  • 6402edeb47 When exporting all dependencies, export filenames when no reliable identifier is available Šesták Vít 2017-02-28 16:57:06 +01:00
  • cf6e1925f7 Added API for listing all dependencies Šesták Vít 2017-02-07 16:22:07 +01:00
  • fef70cedcf Fixed field name Šesták Vít 2017-02-07 15:38:17 +01:00
  • e9336f7c4f Added a forgotten route Šesták Vít 2017-01-31 09:53:02 +01:00
  • e4b382024d Added API for listing of scans Added API support Šesták Vít 2017-01-31 09:31:21 +01:00
  • cd37dda90c Moved status to a less visible place Šesták Vít 2017-01-09 13:13:52 +01:00
  • 85adaaf612 Added filenames to evidence Šesták Vít 2017-01-09 13:10:43 +01:00
  • e236c5b1f9 If authentication has failed, proper error message is used. Šesták Vít 2017-01-06 16:46:41 +01:00
  • c9921765e7 Add error flash messages Šesták Vít 2017-01-06 16:46:25 +01:00
  • e25e67c9f0 Changed homepage to something more friendly. Šesták Vít 2017-01-06 12:22:22 +01:00
  • 951d62d1cf Updated license Šesták Vít 2017-01-06 08:51:18 +01:00
  • 7749741481 Fixed a missing dependency Šesták Vít 2017-01-05 23:01:15 +01:00