[jira] [Commented] (EAGLE-1102) Integrate CVE maven plugin
[ https://issues.apache.org/jira/browse/EAGLE-1102?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16945247#comment-16945247 ] Grainier Perera commented on EAGLE-1102: Please find the [dependency-check-report.html|https://issues.apache.org/jira/secure/attachment/12982206/dependency-check-report.html] attached in parent Jira issue; > Integrate CVE maven plugin > -- > > Key: EAGLE-1102 > URL: https://issues.apache.org/jira/browse/EAGLE-1102 > Project: Eagle > Issue Type: Sub-task >Affects Versions: v0.5.0 >Reporter: Grainier Perera >Assignee: Grainier Perera >Priority: Critical > Labels: security > Time Spent: 0.5h > Remaining Estimate: 0h > > Integrate the CVE maven plugin [1] for eagle to check security during build > time. This will help to detect publicly disclosed vulnerabilities contained > within eagle's dependencies. > [1] https://github.com/jeremylong/DependencyCheck -- This message was sent by Atlassian Jira (v8.3.4#803005)
[jira] [Work logged] (EAGLE-1102) Integrate CVE maven plugin
[ https://issues.apache.org/jira/browse/EAGLE-1102?focusedWorklogId=324008=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-324008 ] ASF GitHub Bot logged work on EAGLE-1102: - Author: ASF GitHub Bot Created on: 06/Oct/19 04:44 Start Date: 06/Oct/19 04:44 Worklog Time Spent: 10m Work Description: grainier commented on issue #1005: [EAGLE-1102] Integrate CVE maven plugin URL: https://github.com/apache/eagle/pull/1005#issuecomment-538711494 @haoch It's attached on the parent issue [1]. And the `dependency-check-report.html` can be found on [2]. [1] https://issues.apache.org/jira/browse/EAGLE-1100 [2] https://issues.apache.org/jira/secure/attachment/12982206/dependency-check-report.html This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. For queries about this service, please contact Infrastructure at: us...@infra.apache.org Issue Time Tracking --- Worklog Id: (was: 324008) Time Spent: 0.5h (was: 20m) > Integrate CVE maven plugin > -- > > Key: EAGLE-1102 > URL: https://issues.apache.org/jira/browse/EAGLE-1102 > Project: Eagle > Issue Type: Sub-task >Affects Versions: v0.5.0 >Reporter: Grainier Perera >Assignee: Grainier Perera >Priority: Critical > Labels: security > Time Spent: 0.5h > Remaining Estimate: 0h > > Integrate the CVE maven plugin [1] for eagle to check security during build > time. This will help to detect publicly disclosed vulnerabilities contained > within eagle's dependencies. > [1] https://github.com/jeremylong/DependencyCheck -- This message was sent by Atlassian Jira (v8.3.4#803005)
[GitHub] [eagle] grainier commented on issue #1005: [EAGLE-1102] Integrate CVE maven plugin
grainier commented on issue #1005: [EAGLE-1102] Integrate CVE maven plugin URL: https://github.com/apache/eagle/pull/1005#issuecomment-538711494 @haoch It's attached on the parent issue [1]. And the `dependency-check-report.html` can be found on [2]. [1] https://issues.apache.org/jira/browse/EAGLE-1100 [2] https://issues.apache.org/jira/secure/attachment/12982206/dependency-check-report.html This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. For queries about this service, please contact Infrastructure at: us...@infra.apache.org With regards, Apache Git Services
[jira] [Work logged] (EAGLE-1102) Integrate CVE maven plugin
[ https://issues.apache.org/jira/browse/EAGLE-1102?focusedWorklogId=324007=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-324007 ] ASF GitHub Bot logged work on EAGLE-1102: - Author: ASF GitHub Bot Created on: 06/Oct/19 04:19 Start Date: 06/Oct/19 04:19 Worklog Time Spent: 10m Work Description: haoch commented on issue #1005: [EAGLE-1102] Integrate CVE maven plugin URL: https://github.com/apache/eagle/pull/1005#issuecomment-538710474 @grainier Could you please attach the CVE alerts on the jira/PR as well? This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. For queries about this service, please contact Infrastructure at: us...@infra.apache.org Issue Time Tracking --- Worklog Id: (was: 324007) Time Spent: 20m (was: 10m) > Integrate CVE maven plugin > -- > > Key: EAGLE-1102 > URL: https://issues.apache.org/jira/browse/EAGLE-1102 > Project: Eagle > Issue Type: Sub-task >Affects Versions: v0.5.0 >Reporter: Grainier Perera >Assignee: Grainier Perera >Priority: Critical > Labels: security > Time Spent: 20m > Remaining Estimate: 0h > > Integrate the CVE maven plugin [1] for eagle to check security during build > time. This will help to detect publicly disclosed vulnerabilities contained > within eagle's dependencies. > [1] https://github.com/jeremylong/DependencyCheck -- This message was sent by Atlassian Jira (v8.3.4#803005)
[GitHub] [eagle] haoch commented on issue #1005: [EAGLE-1102] Integrate CVE maven plugin
haoch commented on issue #1005: [EAGLE-1102] Integrate CVE maven plugin URL: https://github.com/apache/eagle/pull/1005#issuecomment-538710474 @grainier Could you please attach the CVE alerts on the jira/PR as well? This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. For queries about this service, please contact Infrastructure at: us...@infra.apache.org With regards, Apache Git Services