|
@@ -131,6 +131,7 @@
|
|
<hibernate.validator.version>6.2.2.Final</hibernate.validator.version>
|
|
<hibernate.validator.version>6.2.2.Final</hibernate.validator.version>
|
|
<aws.sdk.version>1.12.160</aws.sdk.version>
|
|
<aws.sdk.version>1.12.160</aws.sdk.version>
|
|
<joda-time.version>2.10.13</joda-time.version>
|
|
<joda-time.version>2.10.13</joda-time.version>
|
|
|
|
+ <owasp-dependency-check-maven.version>7.0.4</owasp-dependency-check-maven.version>
|
|
<lombok.version>1.18.20</lombok.version>
|
|
<lombok.version>1.18.20</lombok.version>
|
|
<docker.hub>apache</docker.hub>
|
|
<docker.hub>apache</docker.hub>
|
|
<docker.repo>${project.name}</docker.repo>
|
|
<docker.repo>${project.name}</docker.repo>
|
|
@@ -139,6 +140,7 @@
|
|
<docker.push.skip>true</docker.push.skip>
|
|
<docker.push.skip>true</docker.push.skip>
|
|
|
|
|
|
<python.sign.skip>true</python.sign.skip>
|
|
<python.sign.skip>true</python.sign.skip>
|
|
|
|
+ <skipDepCheck>true</skipDepCheck>
|
|
</properties>
|
|
</properties>
|
|
|
|
|
|
<dependencyManagement>
|
|
<dependencyManagement>
|
|
@@ -984,10 +986,33 @@
|
|
</execution>
|
|
</execution>
|
|
</executions>
|
|
</executions>
|
|
</plugin>
|
|
</plugin>
|
|
|
|
+ <plugin>
|
|
|
|
+ <groupId>org.owasp</groupId>
|
|
|
|
+ <artifactId>dependency-check-maven</artifactId>
|
|
|
|
+ <version>${owasp-dependency-check-maven.version}</version>
|
|
|
|
+ <configuration>
|
|
|
|
+ <skip>${skipDepCheck}</skip>
|
|
|
|
+ <skipProvidedScope>true</skipProvidedScope>
|
|
|
|
+ <skipRuntimeScope>true</skipRuntimeScope>
|
|
|
|
+ <skipSystemScope>true</skipSystemScope>
|
|
|
|
+ <failBuildOnCVSS>7</failBuildOnCVSS>
|
|
|
|
+ </configuration>
|
|
|
|
+ <executions>
|
|
|
|
+ <execution>
|
|
|
|
+ <goals>
|
|
|
|
+ <goal>aggregate</goal>
|
|
|
|
+ </goals>
|
|
|
|
+ </execution>
|
|
|
|
+ </executions>
|
|
|
|
+ </plugin>
|
|
</plugins>
|
|
</plugins>
|
|
</pluginManagement>
|
|
</pluginManagement>
|
|
|
|
|
|
<plugins>
|
|
<plugins>
|
|
|
|
+ <plugin>
|
|
|
|
+ <groupId>org.owasp</groupId>
|
|
|
|
+ <artifactId>dependency-check-maven</artifactId>
|
|
|
|
+ </plugin>
|
|
<plugin>
|
|
<plugin>
|
|
<groupId>org.apache.maven.plugins</groupId>
|
|
<groupId>org.apache.maven.plugins</groupId>
|
|
<artifactId>maven-javadoc-plugin</artifactId>
|
|
<artifactId>maven-javadoc-plugin</artifactId>
|