You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I just got this for ESAPI as well using 6.1.6 version of Dependency Check. Seems like maybe the entire CPE should be used for the matching criteria. The 'asp.net::*' at the end seems like a dead give away that it should apply to Java and if one looks at the details of CVE-2020-7791, the current description references two C# source files which also confirms this is an FP.
False positive on library batik-i18n.jar - reported as cpe:2.3:a:i18n_project:i18n::::::asp.net::*
The issue is in turquoiseowl/i18n#387 and not in batik-i18n
The text was updated successfully, but these errors were encountered: