A maven plugin that allows for maven and gradle project (Java based) to be scanned for security vulnerabilities. The generated report is published to to a central private server @ reshift.reshiftsecurity.com in which users that have access to the projects can view security reports and perform other developer actions
Tags | pluginbuildbuild-systemmaven |
---|---|
Organization | Software Secured |
HomePage | https://reshift.softwaresecured.com |
Date | Jan 07, 2019 |
Files | pom (3 KB) jar (26.4 MB) View All |
Repositories | CentralFenixEdu |
Ranking | #744370 in MvnRepository (See Top Artifacts) |
Vulnerabilities | Vulnerabilities from dependencies: CVE-2024-47554 CVE-2023-4759 CVE-2023-2976 View 3 more ... |
Compile Dependencies (9)
Category/License | Group / Artifact | Version | Updates | |
---|---|---|---|---|
Maven Plugins Apache 2.0 | com.github.spotbugs » spotbugs-maven-plugin | 3.1.9 | 4.9.3.0 | |
Core Utils Apache 2.0 | com.google.guava » guava2 vulnerabilities | 27.0-jre | 33.4.8-jre | |
JSON Lib Apache 2.0 | com.googlecode.json-simple » json-simple | 1.1.1 | ✔ | |
LGPL | com.h3xstream.findsecbugs » findsecbugs-plugin | 1.8.0 | 1.14.0 | |
MIT | com.kstruct » gethostname4j | 0.0.2 | 1.0.0 | |
I/O Apache 2.0 | commons-io » commons-io2 vulnerabilities | 2.6 | 2.19.0 | |
Build Model Apache 2.0 | org.apache.maven » maven-plugin-api | 3.5.4 | 3.9.9 | |
MIT | org.capnproto » runtime | 0.1.3 | 0.1.16 | |
Git Tool BSD 3-clauseEDL 1.0 | org.eclipse.jgit » org.eclipse.jgit1 vulnerability | 5.1.3.201810200350-r | 7.2.0.202503040940-r |
Runtime Dependencies (2)
Category/License | Group / Artifact | Version | Updates | |
---|---|---|---|---|
Build Tool Apache 2.0 | org.apache.maven » maven-core1 vulnerability | 3.5.0 | 3.9.9 | |
Annotation Lib Apache 2.0 | org.apache.maven.plugin-tools » maven-plugin-annotations | 3.4 | 3.15.1 |
Licenses
License | URL |
---|---|
Commercial Proprietary License | https://reshift.softwaresecured.com/tou-plugin |
Developers
Name | Dev Id | Roles | Organization | |
---|---|---|---|---|
Quan Nguyen | qnguyen<at>softwaresecured.com | Software Secured Cautus |