Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / DependencyTrack/dependency-track issues and pull requests

#4162 - Bump org.apache.httpcomponents.client5:httpclient5 from 5.3.1 to 5.4

Pull Request - State: closed - Opened by dependabot[bot] 1 day ago - 1 comment
Labels: dependencies, java

#4159 - Bump lib.protobuf-java.version from 4.28.1 to 4.28.2

Pull Request - State: closed - Opened by dependabot[bot] 2 days ago - 1 comment
Labels: dependencies, java

#4158 - CPE fuzzy matching fails when strings contain valid escaped colons

Issue - State: open - Opened by andrewjmaguire 2 days ago
Labels: enhancement

#4156 - Duplicated components after version upgrade

Issue - State: open - Opened by maur1 3 days ago
Labels: defect, in triage

#4155 - Supress Vulnerability on System Level

Issue - State: closed - Opened by algol68 4 days ago - 1 comment
Labels: duplicate

#4154 - Include team name in audit trail for API-submitted audit changes

Pull Request - State: closed - Opened by Gepardgame 4 days ago - 1 comment
Labels: enhancement

#4153 - Cloned project refers to original component UUIDs in dependency graph

Issue - State: open - Opened by jimklimov 4 days ago - 3 comments
Labels: defect, p2, size/S

#4151 - BOM upload and analysis bugs in 4.11.x

Issue - State: open - Opened by calderonth 5 days ago - 2 comments
Labels: defect, in triage

#4150 - Bump actions/setup-java from 4.2.2 to 4.3.0

Pull Request - State: closed - Opened by dependabot[bot] 5 days ago - 1 comment
Labels: dependencies, github_actions

#4149 - Bump github/codeql-action from 3.26.6 to 3.26.7

Pull Request - State: closed - Opened by dependabot[bot] 5 days ago - 1 comment
Labels: dependencies, github_actions

#4148 - Introduce isLatest flag to mark latest version of project

Issue - State: open - Opened by rkg-mm 7 days ago
Labels: enhancement, p2, size/M

#4147 - Handle existing duplicate component properties

Pull Request - State: closed - Opened by nscuro 8 days ago - 1 comment
Labels: defect

#4146 - Handle empty component and service names

Pull Request - State: closed - Opened by nscuro 8 days ago - 1 comment
Labels: defect

#4145 - Bump SPDX license list to v3.25.0

Pull Request - State: closed - Opened by 2000rosser 8 days ago - 1 comment
Labels: enhancement

#4144 - Vulnerability analysis cannot be performed, if the component contains “purchaser” property in SBOM file

Issue - State: open - Opened by buke-narlitepe-itk 8 days ago - 2 comments
Labels: defect, blocked, p2, size/S

#4143 - Add `AUTHOR` -> `AUTHORS` migration

Pull Request - State: closed - Opened by nscuro 9 days ago - 1 comment
Labels: enhancement

#4142 - Use empty string instead of `SNAPSHOT` as version in BOM download if project doesn't have a version

Pull Request - State: closed - Opened by Gepardgame 9 days ago - 1 comment
Labels: defect

#4141 - Feat: Fix that Emails render all symbols right

Pull Request - State: open - Opened by Gepardgame 9 days ago - 1 comment

#4140 - Emails don't render certain things right

Issue - State: open - Opened by Gepardgame 9 days ago
Labels: defect, in triage

#4139 - Bump lib.protobuf-java.version from 4.28.0 to 4.28.1

Pull Request - State: closed - Opened by dependabot[bot] 9 days ago - 1 comment
Labels: dependencies, java

#4137 - Update to SPDX License List 3.25.0

Issue - State: closed - Opened by msymons 10 days ago - 1 comment
Labels: enhancement

#4136 - Feat/systemwide language

Pull Request - State: closed - Opened by Gepardgame 10 days ago - 1 comment
Labels: enhancement

#4135 - Grouping vulnerabilities by packages

Issue - State: open - Opened by tatyana12345 10 days ago
Labels: enhancement

#4133 - Parent's risk score is 0, however there are childs with scores

Issue - State: open - Opened by Najafov007 12 days ago - 2 comments
Labels: defect, in triage

#4131 - Feat/customizable login page

Pull Request - State: closed - Opened by Gepardgame 15 days ago - 1 comment
Labels: enhancement

#4127 - Increasing memory usage during the PortfolioMetricsUpdateTask

Issue - State: open - Opened by mzweem 16 days ago - 1 comment
Labels: defect, pending more information

#4112 - BOM downloads default to "SNAPSHOT" version when project version is unassigned

Issue - State: closed - Opened by lukas-braune 19 days ago - 3 comments
Labels: defect, p3, good first issue, size/S

#4093 - Feat/add team selection in create project button

Pull Request - State: open - Opened by Gepardgame 29 days ago - 2 comments

#4085 - Bump org.apache.commons:commons-compress from 1.27.0 to 1.27.1

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, java

#4084 - Bump org.apache.maven:maven-artifact from 3.9.8 to 3.9.9

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, java

#4083 - Bump docker/build-push-action from 6.6.1 to 6.7.0

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, github_actions

#4082 - Bump github/codeql-action from 3.26.0 to 3.26.2

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, github_actions

#4076 - Bump com.google.cloud.sql:cloud-sql-connector-jdbc-sqlserver from 1.19.1 to 1.20.0

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, java

#4075 - Bump Alpine to 3.0.1

Pull Request - State: closed - Opened by nscuro about 1 month ago - 1 comment
Labels: dependencies, java

#4074 - Dependency Graphs & External References Not Displayed After Upgrade to 4.1.1.6

Issue - State: closed - Opened by msymons about 1 month ago - 2 comments
Labels: defect, p1, size/S

#4073 - Bump bundled frontend to 4.11.7

Pull Request - State: closed - Opened by nscuro about 1 month ago - 1 comment
Labels: dependencies

#4072 - Add changelog for v4.11.7

Pull Request - State: closed - Opened by nscuro about 1 month ago
Labels: documentation

#4069 - Bump debian from `57bd74e` to `382967f` in /src/main/docker

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, docker

#4068 - Bump org.codehaus.mojo:exec-maven-plugin from 3.4.0 to 3.4.1

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, java

#4064 - Bump org.slf4j:log4j-over-slf4j from 2.0.15 to 2.0.16

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, java

#4063 - Bump docker/build-push-action from 6.5.0 to 6.6.1

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, github_actions

#4062 - Bump github/codeql-action from 3.25.15 to 3.26.0

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, github_actions

#4061 - Bump actions/upload-artifact from 4.3.5 to 4.3.6

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, github_actions

#4060 - Bump actions/setup-java from 4.2.1 to 4.2.2

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, github_actions

#4059 - Enhance badge API to require authorization

Pull Request - State: open - Opened by SaberStrat about 1 month ago - 20 comments
Labels: enhancement

#4058 - Bump bundled frontend to v4.11.6

Pull Request - State: closed - Opened by nscuro about 1 month ago - 1 comment
Labels: dependencies

#4055 - Bump Temurin base image to `21.0.4_7`

Pull Request - State: closed - Opened by nscuro about 1 month ago - 1 comment
Labels: dependencies, docker

#4027 - Error while processing bom: Duplicate key

Issue - State: closed - Opened by DaBalt about 2 months ago - 23 comments
Labels: defect, p2, size/S

#3983 - Add option to test notification publisher

Pull Request - State: closed - Opened by 2000rosser 2 months ago - 8 comments
Labels: enhancement

#3969 - Add support for authors field

Pull Request - State: closed - Opened by 2000rosser 2 months ago - 5 comments
Labels: enhancement

#3936 - Switch to use authors instead of author

Issue - State: closed - Opened by thompson-tomo 2 months ago - 2 comments
Labels: enhancement

#3898 - "...project/{name}/{version}" API Fails to Retrieve Badge When Project Name Includes "/"

Issue - State: open - Opened by we684123 3 months ago - 4 comments
Labels: defect, good first issue, documentation, size/S

#3824 - Dependency Track API fails to start in Fargate Task

Issue - State: open - Opened by mikehall-mozz 4 months ago - 4 comments
Labels: defect, pending more information

#3768 - Generate config documentation from `application.properties`

Pull Request - State: open - Opened by nscuro 4 months ago - 1 comment
Labels: documentation

#3732 - Bom.xml showing zero components after upload (Version server V4.6.3)

Issue - State: closed - Opened by ccfahe 4 months ago - 3 comments
Labels: rejected

#3643 - Use cpe and/or purl from cyclonedx metadata.component to set project cpe and/or purl.

Issue - State: closed - Opened by savek-cc 5 months ago - 2 comments
Labels: defect, p3, size/S

#3638 - Dependency-Track Should Perform Update Check

Issue - State: open - Opened by msymons 5 months ago - 3 comments
Labels: enhancement, p2, size/M

#3598 - Classifier doesn't change when BOM of existing Project is reuploaded

Issue - State: closed - Opened by Tobsensgit 6 months ago - 1 comment
Labels: defect, p3

#3596 - Enhance badge API to require authorization

Issue - State: open - Opened by SaberStrat 6 months ago - 1 comment
Labels: enhancement

#3544 - Global Audit View: Policy Violations

Pull Request - State: open - Opened by rbt-mm 6 months ago - 2 comments
Labels: enhancement

#3395 - SBOM not imported if it was generated by new syft v0.101.0

Issue - State: closed - Opened by securityguru 8 months ago - 4 comments
Labels: wontfix

#3392 - Split direct dependency check from Version Distance Evaluator

Issue - State: open - Opened by elliotsegler 8 months ago - 2 comments
Labels: enhancement

#3363 - [UI] Vulnerability Analysis is not done

Issue - State: closed - Opened by mwilfried 9 months ago - 5 comments
Labels: retracted

#3350 - JAVA_OPTIONS cannot be set in docker-compose.yml

Issue - State: open - Opened by oers 9 months ago - 3 comments
Labels: defect, p2, good first issue, documentation

#3333 - Include team name in audit trail for API-submitted audit changes

Issue - State: closed - Opened by lukas-braune 9 months ago
Labels: enhancement

#3328 - NVD full download again

Issue - State: closed - Opened by somera 9 months ago - 15 comments
Labels: defect, in triage

#3274 - BomUploadProcessingTask - Error while processing bom (Dependency-Track 4.6.3)

Issue - State: closed - Opened by javaface 10 months ago - 2 comments
Labels: retracted

#3258 - Introduce "collection" projects for better usage of hierarchical view #2041

Pull Request - State: open - Opened by rkg-mm 10 months ago - 20 comments

#3200 - Error Process BOM since 4.9.1 Update

Issue - State: closed - Opened by BlythMeister 10 months ago - 4 comments
Labels: defect

#3160 - "Unsupported database file version" with 4.8 to 4.9?

Issue - State: closed - Opened by freddiN 11 months ago - 6 comments
Labels: wontfix

#3108 - Add End-of-life (EOL) / End-of-support (EOS) information for components

Issue - State: open - Opened by hvardhan20 11 months ago - 13 comments
Labels: enhancement

#2924 - Add a way to send test alerts

Issue - State: closed - Opened by rdicroce about 1 year ago - 2 comments
Labels: enhancement

#2900 - Add CVSS score for GHSA vulnerabilites

Issue - State: open - Opened by WDN2010 about 1 year ago - 6 comments
Labels: defect, p2

#2821 - DT not handling a blank name in an SBOM

Issue - State: closed - Opened by nigellh over 1 year ago - 6 comments
Labels: defect, p2, size/S

#2772 - JSON parsing error in SnykAnalysisTask

Issue - State: closed - Opened by rsholokh over 1 year ago - 4 comments
Labels: wontfix

#2710 - Couldn't update component details with CPE info

Issue - State: open - Opened by TerrySunTW over 1 year ago - 1 comment
Labels: defect, p3, good first issue, size/S

#2578 - Portfolio MS Teams Notification are not being sent

Issue - State: open - Opened by Kretikus over 1 year ago - 23 comments
Labels: defect, integration/msteams

#2566 - Unable to Login - 504 Not allowed on Kubernetes Deployment

Issue - State: closed - Opened by sathish-ather over 1 year ago - 8 comments
Labels: rejected

#2498 - Unable to start normally

Issue - State: closed - Opened by sxgnhs over 1 year ago - 2 comments
Labels: wontfix

#2490 - NvdParser is getting pod killed on Dependency Track Api

Issue - State: closed - Opened by anilfe over 1 year ago - 1 comment
Labels: wontfix

#2437 - An unknown error occurred in an asynchronous event or notification thread

Issue - State: closed - Opened by olafz over 1 year ago - 1 comment
Labels: duplicate

#2380 - Dependency graph is not generated for NPM SBOM

Issue - State: closed - Opened by g-sahil22 over 1 year ago - 5 comments
Labels: wontfix

#2366 - Sudden failure to decrypt the OSS Index API Token

Issue - State: open - Opened by carniz over 1 year ago - 14 comments
Labels: defect, pending more information

#2360 - Prevent error level notifications from being sent when repositories return 404s

Issue - State: open - Opened by Mvld3r over 1 year ago
Labels: defect, p3, good first issue, size/S

#2295 - VIEW_PORTFOLIO permissions ability to download the SBOM

Issue - State: open - Opened by webmutation almost 2 years ago - 1 comment
Labels: defect, p3, good first issue, size/S

#2235 - Progressive inconsistencies between Dependency Track database and lucene indexes

Issue - State: closed - Opened by syalioune almost 2 years ago - 3 comments
Labels: defect, p2

#2207 - dl.google.com:443 failed to respond

Issue - State: closed - Opened by AndreiTrW almost 2 years ago - 1 comment
Labels: wontfix

#2141 - JDODataStoreExceptions after startup

Issue - State: closed - Opened by valentijnscholten almost 2 years ago - 9 comments
Labels: defect, p2

#1653 - An unexpected error occurred performing a vulnerability analysis task

Issue - State: closed - Opened by kbolander over 2 years ago - 5 comments
Labels: retracted

#1169 - Error Cloning Audit History when Adding Project Version

Issue - State: closed - Opened by ddurham2 about 3 years ago - 3 comments
Labels: retracted

#1135 - Missing commas in cors verbs dockerfile

Issue - State: open - Opened by Valicia about 3 years ago
Labels: good first issue

#977 - 4.2.0: incorrect Permissions Descriptions

Issue - State: closed - Opened by hostalp over 3 years ago - 1 comment
Labels: duplicate

#897 - Generate Excel Report on project analysis

Issue - State: open - Opened by rvsoni over 3 years ago - 22 comments
Labels: enhancement

#586 - Tag Management

Issue - State: open - Opened by msymons over 4 years ago - 12 comments
Labels: enhancement, gnomes

#306 - Support for Repository Managers such as Nexus

Issue - State: closed - Opened by msymons over 5 years ago - 2 comments
Labels: duplicate

#296 - Getting Started Configuration

Issue - State: open - Opened by security101 over 5 years ago - 2 comments
Labels: enhancement, p3

#281 - Project Overview: Display Last Upload Timestamp

Issue - State: closed - Opened by msymons over 5 years ago - 2 comments
Labels: enhancement, p3

#253 - Pipeline Documentation

Issue - State: open - Opened by msymons almost 6 years ago - 9 comments
Labels: good first issue, documentation, size/S