Skip to content

Commit

Permalink
fixing vuln for apache common compress
Browse files Browse the repository at this point in the history
  • Loading branch information
Ronak Kothari authored and Ronak Kothari committed Feb 20, 2024
1 parent b73febc commit 306fcfe
Showing 1 changed file with 9 additions and 0 deletions.
9 changes: 9 additions & 0 deletions owasp-suppressions.xml
Original file line number Diff line number Diff line change
Expand Up @@ -115,4 +115,13 @@
<packageUrl regex="true">^pkg:maven/io\.grpc/grpc\-.*@.*$</packageUrl>
<cve>CVE-2023-44487</cve>
</suppress>
<suppress until="2024-03-30Z">
<notes><![CDATA[
The fix might be available in 1.26.0, we will upgrade to it when its available
file name: commons-compress-1.24.0.jar
]]></notes>
<packageUrl regex="true">^pkg:maven/org\.apache\.commons/commons\-compress@.*$</packageUrl>
<cve>CVE-2024-25710</cve>
<cve>CVE-2024-26308</cve>
</suppress>
</suppressions>

0 comments on commit 306fcfe

Please sign in to comment.