fix debug output in case DEPENDENCYTRACK_API_URL is not set#9
Open
AndreasUfert wants to merge 14 commits into
Open
fix debug output in case DEPENDENCYTRACK_API_URL is not set#9AndreasUfert wants to merge 14 commits into
AndreasUfert wants to merge 14 commits into
Conversation
Take CVE backport patches from the Yocto recipes into account by uploading a VEX file resolving these. Add support for CVE_CHECK_IGNORE variable Take CVEs marked as ignored into account. TODO: In newer versions of yocto, CVE_CHECK_IGNORE is deprecated in favour of CVE_STATUS Signed-off-by: Jasper Orschulko <jasper@fancydomain.eu>
Only publish to Dependency Track when URL is provided
Added version and timezone info so SBOM will pass CDX 1.4 validation and split vendor name per example
…ack into vasba-add-license-info
…-GmbH/meta-dependencytrack into iris-GmbH-add_support_for_yocto_cve_backports
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
No description provided.