Skip to content

Releases: owasp-dep-scan/dep-scan

Release v5.2.15

01 Apr 20:11
c6893f5
Compare
Choose a tag to compare

What's Changed

Full Changelog: v5.2.14...v5.2.15

Release v5.2.14

29 Mar 11:26
db71fc1
Compare
Choose a tag to compare

Update cdxgen to bring dotnet packages.lock.json fix

Full Changelog: v5.2.13...v5.2.14

Release v5.2.13

27 Mar 21:06
dd4d03e
Compare
Choose a tag to compare

Fix cdxgen version in container image to 10.2.5

What's Changed

Full Changelog: v5.2.12...v5.2.13

Release v5.2.12

12 Mar 17:50
e969ed5
Compare
Choose a tag to compare

What's Changed

Full Changelog: v5.2.11...v5.2.12

Release v5.2.11

27 Feb 20:17
b0ffcd3
Compare
Choose a tag to compare

What's Changed

Full Changelog: v5.2.10...v5.2.11

Release v5.2.10

25 Feb 14:29
7990d18
Compare
Choose a tag to compare

What's Changed

  • Handle zero scores from npm with vdb 5.6.3 by @prabhu in #258
  • Fixes #259 by ignoring pysec feeds with matching github advisory id

Full Changelog: v5.2.9...v5.2.10

Release v5.2.9

14 Feb 18:59
5a098fc
Compare
Choose a tag to compare

What's Changed

  • Support for gem with platform name in the version number by @prabhu in #252

Full Changelog: v5.2.8...v5.2.9

Release v5.2.8

13 Feb 22:56
8c5df5d
Compare
Choose a tag to compare

With this release, depscan should display the dependency tree for Ruby applications with Gemfile.lock thanks to the latest cdxgen.

What's Changed

Full Changelog: v5.2.7...v5.2.8

Release v5.2.7

11 Feb 17:57
d78b70e
Compare
Choose a tag to compare

What's Changed

  • Adds checking env variable for github actions for 5.x by @cerrussell in #238
  • Expand the scope of npm alias to search for vendor with the name npm by @prabhu in #241

Full Changelog: v5.2.6...v5.2.7

Release v5.2.6

31 Jan 12:49
fa0136f
Compare
Choose a tag to compare

What's Changed

Full Changelog: v5.2.5...v5.2.6