Skip to content

[FP]: CVE-2021-4277 is reported as false positive #7912

@va699

Description

@va699

Package URl

/kafka/3.9.0/1/fast/libs/kafka-streams-test-utils-3.9.0.jar

CPE

cpe:2.3:a:utils_project:utils:3.9.0:::::::*

CVE

CVE-2021-4277

ODC Integration

{"label" => "Docker"}

ODC Version

12.1.0

Description

Hi Team,

We are getting vulnerability CVE-2021-4277 in Dependency Checker Tool findings, although as per our analysis we consider it as false positive.

Kindly check and get it fixed in Dependency Checker tool. So, this false positive does not appear in scan report.

Dependency Checker tool is scanning below mentioned path
File Path : /kafka/3.9.0/1/fast/libs/kafka-streams-test-utils-3.9.0.jar

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions