diff --git a/config/owasp/suppressions.xml b/config/owasp/suppressions.xml index bfa913fb7..7ad50e43b 100644 --- a/config/owasp/suppressions.xml +++ b/config/owasp/suppressions.xml @@ -1,77 +1,15 @@ - - - ^org\.springframework\.security:spring-security-crypto:5.[0-9].[0-9].RELEASE - cpe:/a:pivotal_software:spring_security - CVE-2018-1258 - - - - CVE-2020-10663 - CVE-2020-7712 - - - - ^org\.springframework\.boot:spring-boot-starter-oauth2-resource-server:2.7.[0-9] - CVE-2018-1258 - CVE-2021-22112 - CVE-2022-22976 - CVE-2022-22978 - - - - ^.*spring-.*$ - CVE-2016-1000027 - CVE-2022-22976 - CVE-2022-22978 - CVE-2022-31690 - CVE-2022-31692 - - - ^.*tomcat-.*$ - CVE-2022-34305 - ^.*jackson-databind.*$ - CVE-2022-42003 CVE-2023-35116 - - - ^pkg:maven/org\.latencyutils/LatencyUtils@.*$ - CVE-2021-4277 - - - - ^pkg:maven/org\.yaml/snakeyaml@.*$ - CVE-2021-4235 - CVE-2022-3064 - - - ^pkg:maven/commons\-fileupload/commons\-fileupload@.*$ - CVE-2021-37533 - - - ^pkg:maven/commons\-io/commons\-io@.*$ - CVE-2021-37533 - - - ^pkg:maven/org\.postgresql/postgresql@.*$ - CVE-2022-41946 - - - ^.*commons-fileupload.*$ - CVE-2023-24998 - ^.*org\.json.*$ CVE-2022-45688 + + ^pkg:maven/io\.netty/netty.*$ + CVE-2023-4586 +