@@ -5,21 +5,21 @@ ignore:
55 CVE-2020-8908:
66 - reason: not applicable https://nvd.nist.gov/vuln/detail/CVE-2020-8908 -- ^pkg:maven/com\.google\.guava/guava@.*$
77 CVE-2021-21290:
8- - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-all @.*$
8+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.* @.*$
99 CVE-2021-21295:
10- - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-all @.*$
10+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.* @.*$
1111 CVE-2021-21409:
12- - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-all @.*$
12+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.* @.*$
1313 CVE-2021-37136:
14- - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-all @.*$
14+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.* @.*$
1515 CVE-2021-37137:
16- - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-all @.*$
16+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.* @.*$
1717 CVE-2021-43797:
18- - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-all @.*$
18+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.* @.*$
1919 CVE-2022-1471:
2020 - reason: https://issues.apache.org/jira/browse/CASSANDRA-17907 -- ^pkg:maven/org\.yaml/snakeyaml@.*$
2121 CVE-2022-24823:
22- - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-all @.*$
22+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.* @.*$
2323 CVE-2022-25857:
2424 - reason: https://issues.apache.org/jira/browse/CASSANDRA-17907 -- ^pkg:maven/org\.yaml/snakeyaml@.*$
2525 CVE-2022-38749:
@@ -33,18 +33,30 @@ ignore:
3333 CVE-2022-41854:
3434 - reason: https://issues.apache.org/jira/browse/CASSANDRA-17907 -- ^pkg:maven/org\.yaml/snakeyaml@.*$
3535 CVE-2022-41881:
36- - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-all @.*$
36+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.* @.*$
3737 CVE-2023-2976:
3838 - reason: not applicable https://nvd.nist.gov/vuln/detail/CVE-2020-8908 -- ^pkg:maven/com\.google\.guava/guava@.*$
3939 CVE-2023-34462:
40- - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-all @.*$
40+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.* @.*$
4141 CVE-2023-44487:
42- - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-all @.*$
42+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.* @.*$
4343 CVE-2023-6378:
4444 - reason: Suppressed due to internal review, see project's .build/dependency-check-suppressions.xml
4545 CVE-2024-12798:
4646 - reason: Suppressed due to internal review, see project's .build/dependency-check-suppressions.xml
4747 CVE-2024-12801:
4848 - reason: Suppressed due to internal review, see project's .build/dependency-check-suppressions.xml
49+ CVE-2024-29025:
50+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.*@.*$
51+ CVE-2024-47535:
52+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.*@.*$
53+ CVE-2025-24970:
54+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.*@.*$
4955 CVE-2025-25193:
50- - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-all@.*$
56+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.*@.*$
57+ CVE-2025-55163:
58+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.*@.*$
59+ CVE-2025-58056:
60+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.*@.*$
61+ CVE-2025-58057:
62+ - reason: netty's http stuff is not applicable here -- ^pkg:maven/io\.netty/netty\-.*@.*$
0 commit comments