From b2877119d07a973b19aa48cb1e278779bf88e874 Mon Sep 17 00:00:00 2001 From: Chi Cao Minh Date: Tue, 14 Jan 2020 21:15:24 -0800 Subject: [PATCH] Suppress CVE-2019-20330 for htrace-core-4.0.1 (#9189) CVE-2019-20330 was updated on 14 Jan 2020, which now gets flagged by the security vulnerability scan. Since the CVE is for jackson-databind, via htrace-core-4.0.1, it can be added to the existing list of security vulnerability suppressions for that dependency. --- owasp-dependency-check-suppressions.xml | 1 + 1 file changed, 1 insertion(+) diff --git a/owasp-dependency-check-suppressions.xml b/owasp-dependency-check-suppressions.xml index cf88f395744..22ab0ec0e4e 100644 --- a/owasp-dependency-check-suppressions.xml +++ b/owasp-dependency-check-suppressions.xml @@ -194,5 +194,6 @@ CVE-2019-16943 CVE-2019-17267 CVE-2019-17531 + CVE-2019-20330