From 376ef1d4bf9fcc2fcc591f86542c3ad195d79271 Mon Sep 17 00:00:00 2001 From: Rob Moffat Date: Wed, 1 Oct 2025 10:44:06 +0100 Subject: [PATCH 1/3] Added credentials for github action --- .github/workflows/cve-scanning.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/cve-scanning.yml b/.github/workflows/cve-scanning.yml index cff24fbdf..6e2425aab 100644 --- a/.github/workflows/cve-scanning.yml +++ b/.github/workflows/cve-scanning.yml @@ -41,6 +41,8 @@ jobs: --suppression ./.github/workflows/allow-list.xml --failOnCVSS 5 --enableRetired + --ossIndexUsername ${{ secrets.SONATYPE_INDEX_USER }} + --ossIndexPassword ${{ secrets.SONATYPE_INDEX_PASSWORD }} - name: Upload Test results if: ${{ always() }} From 399eeecca1526f25ea2af9a6d06b8b3f273995ce Mon Sep 17 00:00:00 2001 From: Rob Moffat Date: Wed, 1 Oct 2025 11:30:57 +0100 Subject: [PATCH 2/3] pinned v1.1.0 --- .github/workflows/cve-scanning.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/cve-scanning.yml b/.github/workflows/cve-scanning.yml index 6e2425aab..601bde67e 100644 --- a/.github/workflows/cve-scanning.yml +++ b/.github/workflows/cve-scanning.yml @@ -28,7 +28,7 @@ jobs: - name: Build with Maven run: mvn install - name: Depcheck - uses: dependency-check/Dependency-Check_Action@1b5d19fd4a32ff0ff982e8c9d8e27dbf7ac8a46c + uses: dependency-check/Dependency-Check_Action@1.1.0 id: Depcheck env: JAVA_HOME: /opt/jdk From 8f812115976a551e09d40de93436e1999d467cc7 Mon Sep 17 00:00:00 2001 From: Rob Moffat Date: Wed, 1 Oct 2025 11:34:08 +0100 Subject: [PATCH 3/3] skip tests for depcheck --- .github/workflows/cve-scanning.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/cve-scanning.yml b/.github/workflows/cve-scanning.yml index 601bde67e..b02854a59 100644 --- a/.github/workflows/cve-scanning.yml +++ b/.github/workflows/cve-scanning.yml @@ -26,7 +26,7 @@ jobs: java-version: "17" distribution: "temurin" - name: Build with Maven - run: mvn install + run: mvn install -DskipTests - name: Depcheck uses: dependency-check/Dependency-Check_Action@1.1.0 id: Depcheck