-
Type:
Task
-
Resolution: Duplicate
-
Priority:
Major - P3
-
None
-
Affects Version/s: 7.1.0, 6.0.12, 7.0.4
-
Component/s: None
-
None
-
Server Security
-
Security 2023-12-11, Security 2023-12-25, Security 2024-01-08, Security 2024-01-22, Security 2024-02-05, Security 2024-02-19, Security 2024-03-04, Security 2024-04-15, Security 2024-04-29
-
93
-
None
-
3
-
None
-
None
-
None
-
None
-
None
-
None
The new composition analysis scripts check whether new components have been detected on all stable branches, and emit BFs whenever components not listed in etc/third_party_components.yml have been detected. Currently, new components are known by BlackDuck, but not tracked in the older components file. These were likely false negatives at one point, as some of the libraries I checked are tracked in README.third_party.md.