Skip to content
Snippets Groups Projects
Commit 559d231e authored by OZGCloud's avatar OZGCloud
Browse files

add dependency check in jenkins pipeline

parent c53544d1
No related branches found
No related tags found
No related merge requests found
...@@ -89,6 +89,22 @@ pipeline { ...@@ -89,6 +89,22 @@ pipeline {
} }
} }
stage ('OWASP Dependency-Check Vulnerabilities') {
steps {
dependencyCheck additionalArguments: '''
-o "./"
-s "./"
-f "ALL"
-d /dependency-check-data
--suppression dependency-check-supressions.xml
--disableKnownExploited
--disableArchive
--prettyPrint''', odcInstallation: 'dependency-check-owasp'
dependencyCheckPublisher pattern: 'dependency-check-report.xml'
}
}
stage('Sonar Checks') { stage('Sonar Checks') {
when { when {
branch 'master' branch 'master'
......
<?xml version="1.0" encoding="UTF-8"?>
<suppressions xmlns="https://jeremylong.github.io/DependencyCheck/dependency-suppression.1.3.xsd">
<suppress>
<vulnerabilityName>CVE-DUMMY</vulnerabilityName>
</suppress>
</suppressions>
\ No newline at end of file
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment