dependencyCheckSuppressions.xml 1.4 KB

123456789101112131415161718192021222324252627282930313233343536
  1. <?xml version="1.0" encoding="UTF-8"?>
  2. <suppressions xmlns="https://jeremylong.github.io/DependencyCheck/dependency-suppression.1.3.xsd">
  3. <!-- You can add <suppress>...</suppress> entries in here. -->
  4. <!-- Ignore CVE-2020-8908: Used by exoplayer, but vulnerable code (createTempDir)
  5. is not used. -->
  6. <suppress>
  7. <notes><![CDATA[
  8. file name: guava-27.1-android.jar
  9. ]]></notes>
  10. <packageUrl regex="true">^pkg:maven/com\.google\.guava/guava@.*$</packageUrl>
  11. <cve>CVE-2020-8908</cve>
  12. </suppress>
  13. <!-- Ignore wrong matches. -->
  14. <suppress>
  15. <packageUrl regex="true">^pkg:maven/org\.saltyrtc/saltyrtc\-task\-webrtc@.*$</packageUrl>
  16. <cpe>cpe:/a:webrtc_project:webrtc</cpe>
  17. </suppress>
  18. <suppress>
  19. <packageUrl regex="true">^pkg:maven/org\.saltyrtc/saltyrtc\-task\-webrtc@.*$</packageUrl>
  20. <cpe>cpe:/a:tasks:tasks</cpe>
  21. </suppress>
  22. <suppress>
  23. <packageUrl regex="true">^pkg:maven/com\.huawei\.hmf/tasks@.*$</packageUrl>
  24. <cpe>cpe:/a:tasks:tasks</cpe>
  25. </suppress>
  26. <suppress>
  27. <packageUrl regex="true">^pkg:maven/org\.jetbrains\.kotlin/kotlin\-stdlib@.*$</packageUrl>
  28. <cpe>cpe:/a:jetbrains:kotlin</cpe>
  29. </suppress>
  30. <suppress>
  31. <packageUrl regex="true">^pkg:maven/org\.jetbrains\.kotlin/kotlin\-stdlib\-common@.*$</packageUrl>
  32. <cpe>cpe:/a:jetbrains:kotlin</cpe>
  33. </suppress>
  34. </suppressions>