diff --git a/dependencySuppression.xml b/dependencySuppression.xml new file mode 100644 index 0000000..8fa6429 --- /dev/null +++ b/dependencySuppression.xml @@ -0,0 +1,16 @@ + + + + ^pkg:maven/org\.springframework/spring\-web@.*$ + CVE-2016-1000027 + + + + ^pkg:maven/org\.springframework\.boot/spring-boot-devtools@.*$ + CVE-2022-31691 + + diff --git a/pom.xml b/pom.xml index 679a775..1dbdd2f 100644 --- a/pom.xml +++ b/pom.xml @@ -71,7 +71,6 @@ org.springframework.boot spring-boot-devtools true - runtime org.springframework.boot @@ -342,6 +341,9 @@ nvd 7 ossindex + + ${project.basedir}/dependencySuppression.xml +