diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index f2899396..3b737cab 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -64,6 +64,6 @@ jobs: if: always() uses: actions/upload-artifact@v4 with: - name: nvd-${{ matrix.project.profile }}-${{ github.sha }} + name: nvd-${{ matrix.project }}-${{ github.sha }} path: ./${{ matrix.project }}/dependency-check/report/* retention-days: 1 diff --git a/slipway-jetty10/dependency-check-suppressions.xml b/slipway-jetty10/dependency-check-suppressions.xml index 734ef66d..d6451854 100644 --- a/slipway-jetty10/dependency-check-suppressions.xml +++ b/slipway-jetty10/dependency-check-suppressions.xml @@ -12,4 +12,9 @@ ^pkg:maven/org\.clojure/.*$ CVE-2017-20189 + + Clojure false positive + ^pkg:maven/ring/ring\-codec@.*$ + CVE-2017-20189 + diff --git a/slipway-jetty11/dependency-check-suppressions.xml b/slipway-jetty11/dependency-check-suppressions.xml index 4bd7eaab..4759505e 100644 --- a/slipway-jetty11/dependency-check-suppressions.xml +++ b/slipway-jetty11/dependency-check-suppressions.xml @@ -12,4 +12,9 @@ ^pkg:maven/org\.clojure/.*$ CVE-2017-20189 + + Clojure false positive + ^pkg:maven/ring/ring\-codec@.*$ + CVE-2017-20189 + diff --git a/slipway-jetty9/dependency-check-suppressions.xml b/slipway-jetty9/dependency-check-suppressions.xml index 2eb15ea0..4d64ab46 100644 --- a/slipway-jetty9/dependency-check-suppressions.xml +++ b/slipway-jetty9/dependency-check-suppressions.xml @@ -12,4 +12,9 @@ ^pkg:maven/org\.clojure/.*$ CVE-2017-20189 + + Clojure false positive + ^pkg:maven/ring/ring\-codec@.*$ + CVE-2017-20189 +