From f506d4c1cb3f1471233b74f96efa0dd57e27c297 Mon Sep 17 00:00:00 2001 From: Chad Wilson <29788154+chadlwilson@users.noreply.github.com> Date: Thu, 14 May 2026 17:01:32 +0800 Subject: [PATCH] chore(fp): remove unnecessary grpc suppressions These have been moved to hosted/generated suppressions. Signed-off-by: Chad Wilson <29788154+chadlwilson@users.noreply.github.com> --- .../dependencycheck-base-suppression.xml | 78 ------------------- 1 file changed, 78 deletions(-) diff --git a/core/src/main/resources/dependencycheck-base-suppression.xml b/core/src/main/resources/dependencycheck-base-suppression.xml index 5fb964bc377..cca1e56f94a 100644 --- a/core/src/main/resources/dependencycheck-base-suppression.xml +++ b/core/src/main/resources/dependencycheck-base-suppression.xml @@ -95,13 +95,6 @@ ^pkg:maven/org\.zalando/spring\-boot\-etcd@.*$ cpe:/a:etcd:etcd - - - ^pkg:maven/com\.salesforce\.servicelibs/reactive\-grpc.*$ - cpe:/a:grpc:grpc - ^pkg:maven/io\.helidon\.microprofile\.server/helidon\-microprofile\-server@.*$ cpe:/a:oracle:http_server - - - ^pkg:maven/co\.elastic\.apm/apm\-.*$ - cpe:/a:grpc:grpc - cpe:/a:apache:httpclient - ^pkg:maven/.*vertx-pg-client@.*$ cpe:/a:postgresql:postgresql - - - ^pkg:maven/io\.opencensus/opencensus\-contrib\-grpc\-metrics@.*$ - cpe:/a:grpc:grpc - - - https://nvd.nist.gov/vuln/search#/nvd/home?sortOrder=1&sortDirection=1&cpeFilterMode=applicability&cpeName=cpe:2.3:a:grpc:grpc:*:*:*:*:*:*:*:*&resultType=records - ]]> - ^pkg:maven/io\.grpc/grpc\-.*$ - CVE-2017-7860 - CVE-2017-7861 - CVE-2017-8359 - CVE-2017-9431 - CVE-2020-7768 - CVE-2023-1428 - CVE-2023-32731 - CVE-2023-32732 - CVE-2023-33953 - CVE-2023-4785 - CVE-2024-11407 - CVE-2024-7246 - - - - ^pkg:maven/com\.google\.api\.grpc/grpc\-google\-common\-protos@.*$ - cpe:/a:grpc:grpc - - - - ^pkg:maven/com\.lightstep\.tracer/.*$ - cpe:/a:grpc:grpc - ^com\.typesafe\.akka:akka-persistence-cassandra:.*$ cpe:/a:akka:akka - - - ^pkg:maven/io\.opencensus/opencensus\-contrib\-grpc\-util@.*$ - cpe:/a:grpc:grpc - - - - ^com\.google\.api\.grpc:proto-.*$ - cpe:/a:grpc:grpc - ^pkg:maven/com\.google\.flatbuffers/flatbuffers-java@.*$ cpe:/a:flat(_project)?:flat.* - - - ^pkg:maven/me\.dinowernli/java\-grpc\-prometheus@.*$ - cpe:/a:grpc:grpc - cpe:/a:prometheus:prometheus -