Skip to content

Commit e720397

Browse files
committed
Add suppression for micrometer-registry-prometheus-simpleclient-1.13.4.jar (ce-main->ce-25.03 @115005)
[git-p4: depot-paths = "//dev/coherence-ce/release/coherence-ce-v25.03/": change = 115006]
1 parent 9494edb commit e720397

File tree

1 file changed

+13
-1
lines changed

1 file changed

+13
-1
lines changed

prj/etc/dependency-check-suppression.xml

Lines changed: 13 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -484,5 +484,17 @@
484484
<cpe>cpe:2.3:a:eclipse:jakarta_expression_language</cpe>
485485
<cve>CVE-2023-5763</cve>
486486
</suppress>
487-
487+
488+
<!-- This is being triggered from tests/functional/mp-metrics tests
489+
False Positive on micrometer-registry-prometheus
490+
https://github.com/dependency-check/DependencyCheck/issues/1927 -->
491+
<suppress>
492+
<notes><![CDATA[
493+
file name: micrometer-registry-prometheus-simpleclient-1.13.4.jar
494+
]]></notes>
495+
<packageUrl regex="true">^pkg:maven/io\.micrometer/micrometer\-registry\-prometheus\-simpleclient@.*$</packageUrl>
496+
<cpe>cpe:2.3:a:prometheus:prometheus</cpe>
497+
<cve>CVE-2019-3826</cve>
498+
</suppress>
499+
488500
</suppressions>

0 commit comments

Comments
 (0)