Skip to content

Test sbom. #65

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Closed
wants to merge 25 commits into from
Closed

Test sbom. #65

wants to merge 25 commits into from

Conversation

herbertroth
Copy link
Member

Changes in this pull request

Resolves #

Additional info

Copy link

github-actions bot commented Oct 9, 2024

Scanned /home/runner/work/static-resolver-bundle/static-resolver-bundle/sbom.json as CycloneDX SBOM and found 193 packages
+-------------------------------------+------+-----------+-----------------+----------+-----------+
| OSV URL | CVSS | ECOSYSTEM | PACKAGE | VERSION | SOURCE |
+-------------------------------------+------+-----------+-----------------+----------+-----------+
| https://osv.dev/GHSA-277c-5vvj-9pwx | 7.5 | Packagist | pimcore/pimcore | v11.0.12 | sbom.json |
| https://osv.dev/GHSA-72hh-xf79-429p | 8.8 | Packagist | pimcore/pimcore | v11.0.12 | sbom.json |
| https://osv.dev/GHSA-j59v-hh4p-q92m | 5.4 | Packagist | pimcore/pimcore | v11.0.12 | sbom.json |
| https://osv.dev/GHSA-vjwg-28gv-pm8h | 6.1 | Packagist | pimcore/pimcore | v11.0.12 | sbom.json |
+-------------------------------------+------+-----------+-----------------+----------+-----------+

Copy link

github-actions bot commented Oct 9, 2024

Scanned /home/runner/work/static-resolver-bundle/static-resolver-bundle/sbom.json as CycloneDX SBOM and found 193 packages
+-------------------------------------+------+-----------+-----------------+----------+-----------+
| OSV URL | CVSS | ECOSYSTEM | PACKAGE | VERSION | SOURCE |
+-------------------------------------+------+-----------+-----------------+----------+-----------+
| https://osv.dev/GHSA-277c-5vvj-9pwx | 7.5 | Packagist | pimcore/pimcore | v11.0.12 | sbom.json |
| https://osv.dev/GHSA-72hh-xf79-429p | 8.8 | Packagist | pimcore/pimcore | v11.0.12 | sbom.json |
| https://osv.dev/GHSA-j59v-hh4p-q92m | 5.4 | Packagist | pimcore/pimcore | v11.0.12 | sbom.json |
| https://osv.dev/GHSA-vjwg-28gv-pm8h | 6.1 | Packagist | pimcore/pimcore | v11.0.12 | sbom.json |
+-------------------------------------+------+-----------+-----------------+----------+-----------+

Copy link

github-actions bot commented Oct 9, 2024

Scanned /home/runner/work/static-resolver-bundle/static-resolver-bundle/sbom.json as CycloneDX SBOM and found 193 packages
+-------------------------------------+------+-----------+-----------------+----------+-----------+
| OSV URL | CVSS | ECOSYSTEM | PACKAGE | VERSION | SOURCE |
+-------------------------------------+------+-----------+-----------------+----------+-----------+
| https://osv.dev/GHSA-277c-5vvj-9pwx | 7.5 | Packagist | pimcore/pimcore | v11.0.12 | sbom.json |
| https://osv.dev/GHSA-72hh-xf79-429p | 8.8 | Packagist | pimcore/pimcore | v11.0.12 | sbom.json |
| https://osv.dev/GHSA-j59v-hh4p-q92m | 5.4 | Packagist | pimcore/pimcore | v11.0.12 | sbom.json |
| https://osv.dev/GHSA-vjwg-28gv-pm8h | 6.1 | Packagist | pimcore/pimcore | v11.0.12 | sbom.json |
+-------------------------------------+------+-----------+-----------------+----------+-----------+

Copy link

github-actions bot commented Oct 9, 2024

No vulnerabilities found in the CycloneDX SBOM

Copy link

sonarqubecloud bot commented Oct 9, 2024

@github-actions github-actions bot locked and limited conversation to collaborators Nov 28, 2024
@herbertroth herbertroth deleted the sbom-test branch February 11, 2025 06:49
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant