We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
What happened:
Currently syft will generate a purl of pkg:maven/13/13@3.2.2 for the kafka jar from https://repo1.maven.org/maven2/org/apache/kafka/kafka_2.13/3.2.2/kafka_2.13-3.2.2.jar. I'm guessing it is some confusion with the archive filename parser and a name like kafka_2.13-3.2.2
pkg:maven/13/13@3.2.2
kafka_2.13-3.2.2
What you expected to happen:
The correct purl for this artifact is pkg:maven/org.apache.kafka/kafka_2.13@3.2.2
pkg:maven/org.apache.kafka/kafka_2.13@3.2.2
Steps to reproduce the issue:
Download https://repo1.maven.org/maven2/org/apache/kafka/kafka_2.13/3.2.2/kafka_2.13-3.2.2.jar locally
syft ~/Downloads/kafka_2.13-3.2.2.jar -o json | jq . | fgrep purl ✔ Indexed file system /Users/weston/Downloads ✔ Cataloged packages [1 packages] "purl": "pkg:maven/13/13@3.2.2",
Anything else we need to know?:
Environment:
syft version
cat /etc/os-release
The text was updated successfully, but these errors were encountered:
Successfully merging a pull request may close this issue.
What happened:
Currently syft will generate a purl of
pkg:maven/13/13@3.2.2
for the kafka jar from https://repo1.maven.org/maven2/org/apache/kafka/kafka_2.13/3.2.2/kafka_2.13-3.2.2.jar. I'm guessing it is some confusion with the archive filename parser and a name likekafka_2.13-3.2.2
What you expected to happen:
The correct purl for this artifact is
pkg:maven/org.apache.kafka/kafka_2.13@3.2.2
Steps to reproduce the issue:
Download https://repo1.maven.org/maven2/org/apache/kafka/kafka_2.13/3.2.2/kafka_2.13-3.2.2.jar locally
Anything else we need to know?:
Environment:
syft version
:cat /etc/os-release
or similar):The text was updated successfully, but these errors were encountered: