Skip to content

Bump org.owasp:dependency-check-maven from 9.0.10 to 9.1.0

Bumps org.owasp:dependency-check-maven from 9.0.10 to 9.1.0.

Release notes

Sourced from org.owasp:dependency-check-maven's releases.

Version 9.1.0

Refer to the CHANGELOG.md for information about improvements and upgrade notes.

Changelog

Sourced from org.owasp:dependency-check-maven's changelog.

Version 9.1.0 (2024-03-31)

  • feat: Add v2 support for maven_install.json (#6528)
  • build(deps): bump open-vulnerability-client (#6554)
    • resolves update issues due to CVSS Metrics 4.0
  • build(deps): bump jackson.version from 2.16.0 to 2.16.1 (#6353)
  • build(deps): bump org.jsoup:jsoup from 1.16.2 to 1.17.2 (#6362)
  • build(deps): bump golang from 1.21.5-alpine to 1.22.1-alpine (#6506)

See the full listing of changes.

Commits
  • e0b9397 build: prepare release v9.1.0
  • 3f1b558 docs: prepare release 9.1.0
  • c364269 build(deps): bump jackson.version from 2.16.0 to 2.16.1 (#6353)
  • d2c04b5 build(deps): bump org.jsoup:jsoup from 1.16.2 to 1.17.2 (#6362)
  • e8c4ca3 build(deps): bump open-vulnerability-client (#6554)
  • 2e6a231 build(deps): bump golang from 1.21.5-alpine to 1.22.1-alpine (#6506)
  • 0e183da build(deps): bump actions/setup-java from 3 to 4 (#6172)
  • 42adde4 fix: typo (#6526)
  • f60c867 feat: Add v2 support for maven_install.json (#6528)
  • a6a8f21 Merge pull request #1 from nutshelllabs/ef/add-maven-install-v2-support
  • Additional commits viewable in compare view


Dependabot commands
You can trigger Dependabot actions by commenting on this MR
  • $dependabot recreate will recreate this MR rewriting all the manual changes and resolving conflicts

Merge request reports