Skip to content

Conversation

@nscuro
Copy link
Member

@nscuro nscuro commented Oct 9, 2022

@nscuro nscuro added the enhancement New feature or request label Oct 9, 2022
@nscuro nscuro added this to the 4.6 milestone Oct 9, 2022
@nscuro nscuro merged commit ac99c3b into DependencyTrack:master Oct 9, 2022
@nscuro nscuro deleted the enable-new-vulnerable-dependency-group branch October 9, 2022 13:06
sahibamittal added a commit to sahibamittal/dependency-track-frontend-upstream that referenced this pull request Oct 11, 2022
commit 80fa9d2
Merge: fe862fc 5944393
Author: Niklas <nscuro@protonmail.com>
Date:   Mon Oct 10 10:05:33 2022 +0200

    Merge pull request DependencyTrack#273 from DependencyTrack/dependabot/github_actions/actions/checkout-3.1.0

    build(deps): bump actions/checkout from 3.0.2 to 3.1.0

commit fe862fc
Merge: ac99c3b 65bb03b
Author: Niklas <nscuro@protonmail.com>
Date:   Mon Oct 10 10:04:53 2022 +0200

    Merge pull request DependencyTrack#267 from DependencyTrack/dependabot/docker/docker/nginxinc/nginx-unprivileged-ff29830

    build(deps): bump nginxinc/nginx-unprivileged from `de9ed41` to `ff29830` in /docker

commit ac99c3b
Merge: 1eaefe5 122ce55
Author: Niklas <nscuro@protonmail.com>
Date:   Sun Oct 9 15:06:31 2022 +0200

    Merge pull request DependencyTrack#277 from nscuro/enable-new-vulnerable-dependency-group

    Re-enable NEW_VULNERABLE_DEPENDENCY notification

commit 122ce55
Author: nscuro <nscuro@protonmail.com>
Date:   Sun Oct 9 14:47:44 2022 +0200

    Re-enable NEW_VULNERABLE_DEPENDENCY notification

    DependencyTrack/dependency-track#1611
    Signed-off-by: nscuro <nscuro@protonmail.com>

commit 5944393
Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Date:   Wed Oct 5 02:04:08 2022 +0000

    build(deps): bump actions/checkout from 3.0.2 to 3.1.0

    Bumps [actions/checkout](https://github.com/actions/checkout) from 3.0.2 to 3.1.0.
    - [Release notes](https://github.com/actions/checkout/releases)
    - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
    - [Commits](actions/checkout@v3.0.2...v3.1.0)

    ---
    updated-dependencies:
    - dependency-name: actions/checkout
      dependency-type: direct:production
      update-type: version-update:semver-minor
    ...

    Signed-off-by: dependabot[bot] <support@github.com>

commit 65bb03b
Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Date:   Thu Sep 29 01:42:55 2022 +0000

    build(deps): bump nginxinc/nginx-unprivileged in /docker

    Bumps nginxinc/nginx-unprivileged from `de9ed41` to `ff29830`.

    ---
    updated-dependencies:
    - dependency-name: nginxinc/nginx-unprivileged
      dependency-type: direct:production
      update-type: version-update:semver-patch
    ...

    Signed-off-by: dependabot[bot] <support@github.com>

commit 1eaefe5
Merge: ed43676 e5da956
Author: Niklas <nscuro@protonmail.com>
Date:   Wed Sep 28 10:43:27 2022 +0200

    Merge pull request DependencyTrack#262 from DependencyTrack/dependabot/github_actions/actions/setup-node-3.5.0

commit ed43676
Merge: f3b6a0c d33ce07
Author: Niklas <nscuro@protonmail.com>
Date:   Wed Sep 28 10:39:06 2022 +0200

    Merge pull request DependencyTrack#261 from DependencyTrack/dependabot/docker/docker/nginxinc/nginx-unprivileged-de9ed41

commit f3b6a0c
Merge: df995f5 2196f55
Author: Niklas <nscuro@protonmail.com>
Date:   Wed Sep 28 10:38:07 2022 +0200

    Merge pull request DependencyTrack#259 from awegg/1948_cvss_on_components

commit e5da956
Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Date:   Wed Sep 28 01:37:44 2022 +0000

    build(deps): bump actions/setup-node from 3.4.1 to 3.5.0

    Bumps [actions/setup-node](https://github.com/actions/setup-node) from 3.4.1 to 3.5.0.
    - [Release notes](https://github.com/actions/setup-node/releases)
    - [Commits](actions/setup-node@v3.4.1...v3.5.0)

    ---
    updated-dependencies:
    - dependency-name: actions/setup-node
      dependency-type: direct:production
      update-type: version-update:semver-minor
    ...

    Signed-off-by: dependabot[bot] <support@github.com>

commit d33ce07
Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Date:   Tue Sep 27 01:39:41 2022 +0000

    build(deps): bump nginxinc/nginx-unprivileged in /docker

    Bumps nginxinc/nginx-unprivileged from `e916f63` to `de9ed41`.

    ---
    updated-dependencies:
    - dependency-name: nginxinc/nginx-unprivileged
      dependency-type: direct:production
      update-type: version-update:semver-patch
    ...

    Signed-off-by: dependabot[bot] <support@github.com>

commit 2196f55
Author: awegg <alexander@weggerle.de>
Date:   Sun Sep 25 13:26:22 2022 +0200

    Add CVSS, EPSS to Component Vulnerabilities

    Make more information available on the component vulnerability tab with default visibility false.

    Fixes DependencyTrack/dependency-track#1948

    Signed-off-by: awegg <alexander@weggerle.de>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

enhancement New feature or request

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant