From 808660633bc8bc170e201d8526b0719c2fd8c1a6 Mon Sep 17 00:00:00 2001 From: Malena Ebert Date: Fri, 2 Oct 2020 16:31:29 +0200 Subject: [PATCH] Suppress false positive vulnerabilites --- owasp-suppressions.xml | 55 ++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 55 insertions(+) diff --git a/owasp-suppressions.xml b/owasp-suppressions.xml index f4e3114039a..fedf329fe11 100644 --- a/owasp-suppressions.xml +++ b/owasp-suppressions.xml @@ -187,4 +187,59 @@ pkg:maven/com\.jcraft/jsch\.agentproxy\..*@0.0.7 CVE-2016-5725 + + + + + + ^pkg:maven/com\.sonarsource\.vsts/alm\-gallery\-client@.*$ + cpe:/a:gallery:gallery + + + + + + ^pkg:maven/org\.jetbrains\.kotlin/kotlin\-stdlib(\-common)?@1.4.10$ + CVE-2020-15824 + + + + + + ^pkg:maven/com\.hazelcast/hazelcast\-client\-protocol@.*$ + CVE-2016-10750 + + + + + ^pkg:npm/d3\-zoom@.*$ + cpe:/a:zoom:zoom + + + + + ^pkg:npm/dompurify@.*$ + CVE-2019-16728 + CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') + + + + + ^pkg:npm/lodash@.*$ + CVE-2019-10744 + CVE-2020-8203 + CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') + -- 2.39.5