-
Notifications
You must be signed in to change notification settings - Fork 51
/
dependency-suppression.xml
66 lines (66 loc) · 2.33 KB
/
dependency-suppression.xml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
<?xml version="1.0" encoding="UTF-8"?>
<suppressions xmlns="https://jeremylong.github.io/DependencyCheck/dependency-suppression.1.1.xsd">
<suppress>
<notes><![CDATA[
webjars are not npm
]]></notes>
<gav regex="true">^org\.webjars\.npm:.*$</gav>
<cpe>cpe:/a:npm:npm</cpe>
</suppress>
<suppress>
<notes><![CDATA[
file name: okapi-filter-openoffice-0.29.jar
]]></notes>
<gav regex="true">^net\.sf\.okapi\.filters:okapi-filter-openoffice:.*$</gav>
<cpe>cpe:/a:openoffice:openoffice</cpe>
</suppress>
<suppress>
<notes><![CDATA[
file name: owasp-java-html-sanitizer-r239.jar
]]></notes>
<gav regex="true">^com\.googlecode\.owasp-java-html-sanitizer:owasp-java-html-sanitizer:.*$</gav>
<cve>CVE-2011-4457</cve>
</suppress>
<suppress>
<notes><![CDATA[
file name: org.apache.oltu.oauth2.authzserver-1.0.1.jar
]]></notes>
<gav regex="true">^org\.apache\.oltu\.oauth2:org\.apache\.oltu\.oauth2\.authzserver:.*$</gav>
<cpe>cpe:/a:apache:apache_http_server</cpe>
</suppress>
<suppress>
<notes><![CDATA[
file name: org.apache.oltu.oauth2.authzserver-1.0.1.jar
]]></notes>
<gav regex="true">^org\.apache\.oltu\.oauth2:org\.apache\.oltu\.oauth2\.authzserver:.*$</gav>
<cpe>cpe:/a:apache:http_server</cpe>
</suppress>
<suppress>
<notes><![CDATA[
file name: org.apache.oltu.oauth2.resourceserver-1.0.1.jar
]]></notes>
<gav regex="true">^org\.apache\.oltu\.oauth2:org\.apache\.oltu\.oauth2\.resourceserver:.*$</gav>
<cpe>cpe:/a:apache:apache_http_server</cpe>
</suppress>
<suppress>
<notes><![CDATA[
file name: gin-1.5.0.jar
]]></notes>
<gav regex="true">^com\.google\.gwt\.inject:gin:.*$</gav>
<cpe>cpe:/a:google:web_toolkit</cpe>
</suppress>
<suppress>
<notes><![CDATA[
file name: gwt-log-3.2.1.jar
]]></notes>
<gav regex="true">^com\.allen-sauer\.gwt\.log:gwt-log:.*$</gav>
<cpe>cpe:/a:google:web_toolkit</cpe>
</suppress>
<suppress>
<notes><![CDATA[
file name: gwt-servlet-2.8.0.jar
]]></notes>
<gav regex="true">^com\.google\.gwt:gwt-servlet:.*$</gav>
<cpe>cpe:/a:google:protobuf</cpe>
</suppress>
</suppressions>