Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Augment Failure Report with first level dependency if transitive vulnerable dependency #132

Open
albuch opened this issue Jun 8, 2020 · 0 comments

Comments

@albuch
Copy link
Owner

albuch commented Jun 8, 2020

Is your feature request related to a problem? Please describe.
If a transitive dependency has a vulnerability it would be great to directly see which actual dependency defined in the build pulls the vulnerability in without the need to manually check the dependency tree.

Describe the solution you'd like
Display the dependency graph for a vulnerable dependency in the log output.

Describe alternatives you've considered
Manually running jrudolphs dependencyTree

@albuch albuch changed the title Augment Failure Report with first level dependency if vulnerabilty in transitive dependency Augment Failure Report with first level dependency if in transitive dependency Jun 8, 2020
@albuch albuch changed the title Augment Failure Report with first level dependency if in transitive dependency Augment Failure Report with first level dependency if transitive vulnerable dependency Jun 8, 2020
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant