[jbosstools-issues] [JBoss JIRA] (JBDS-4237) Generate CVE vulnerability report for devstudio

Nick Boldt (JIRA) issues at jboss.org
Thu Jan 5 11:37:01 EST 2017


Nick Boldt created JBDS-4237:
--------------------------------

             Summary: Generate CVE vulnerability report for devstudio
                 Key: JBDS-4237
                 URL: https://issues.jboss.org/browse/JBDS-4237
             Project: Red Hat JBoss Developer Studio (devstudio)
          Issue Type: Bug
          Components: build, versionwatch
    Affects Versions: 10.3.0.AM1
            Reporter: Nick Boldt


0. download http://dl.bintray.com/jeremy-long/owasp/dependency-check-1.4.4-release.zip
1. download latest CI build update site zip, target platform zip, central zip, etc.
2. unpack update site zips
3. unpack dep-check zip
4. generate CVE report for each fetched zip:

{code}
./dependency-check.sh --disableAssembly -s /path/to/update-site/plugins/ --project devstudio_check -o WORKSPACE/path/to/report/folder/
{code}



--
This message was sent by Atlassian JIRA
(v7.2.3#72005)


More information about the jbosstools-issues mailing list