Skip to content

Commit

Permalink
Add suppression for graalvm compiler (helidon-io#9048)
Browse files Browse the repository at this point in the history
  • Loading branch information
barchetta authored Jul 29, 2024
1 parent 2360d3d commit fb7f95c
Showing 1 changed file with 10 additions and 0 deletions.
10 changes: 10 additions & 0 deletions etc/dependency-check-suppression.xml
Original file line number Diff line number Diff line change
Expand Up @@ -113,6 +113,16 @@
<vulnerabilityName>CVE-2024-20932</vulnerabilityName>
</suppress>

<!-- This low priority CVE does not apply to our use of the graalvm sdk.
-->
<suppress>
<notes><![CDATA[
file name: graal-sdk-22.3.0.jar
]]></notes>
<packageUrl regex="true">^pkg:maven/org\.graalvm\.sdk/graal-sdk@.*$</packageUrl>
<vulnerabilityName>CVE-2024-21138</vulnerabilityName>
</suppress>

<!--
This CVE is being disputed by the Jackson project and the community seems in agreement that this
CVE should be rejected. We are suppressing this for now to reduce noise in our scan and will
Expand Down

0 comments on commit fb7f95c

Please sign in to comment.