Skip to content

Commit

Permalink
Support OWASP 2021 (#774)
Browse files Browse the repository at this point in the history
  • Loading branch information
Reamer committed Apr 13, 2023
1 parent 44682bc commit 66d43ba
Showing 1 changed file with 4 additions and 3 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -19,14 +19,14 @@
*/
package org.sonar.dependencycheck.rule;

import javax.annotation.ParametersAreNonnullByDefault;

import org.sonar.api.rule.RuleStatus;
import org.sonar.api.rule.Severity;
import org.sonar.api.rules.RuleType;
import org.sonar.api.server.rule.RulesDefinition;
import org.sonar.dependencycheck.base.DependencyCheckConstants;

import javax.annotation.ParametersAreNonnullByDefault;

public class KnownCveRuleDefinition implements RulesDefinition {

private static final int CWE_937 = 937;
Expand All @@ -51,7 +51,8 @@ private void fillOWASPRule(NewRule rule) {
rule.setName("Using Components with Known Vulnerabilities");
rule.setSeverity(Severity.MAJOR);
rule.setStatus(RuleStatus.READY);
rule.addOwaspTop10(OwaspTop10.A9);
rule.addOwaspTop10(OwaspTop10Version.Y2017, OwaspTop10.A9);
rule.addOwaspTop10(OwaspTop10Version.Y2021, OwaspTop10.A6);
rule.addCwe(CWE_937);

String description = "<p>Components, such as libraries, frameworks, and other software modules, "
Expand Down

0 comments on commit 66d43ba

Please sign in to comment.