DependencyTrack / DependencyTrack/dependency-track

Assess coverage of CycloneDX 1.4 fields

Open
#1,733 0 comments 0 reactions 0 assignees View on GitHub
cdx-1.4 enhancement good first issue needs milestone spike / research
Dominant language
Java
Stars
4.2k
Forks
811
Avg merge
8h 39m
Merged PRs (30d)
237

Description

### Current Behavior:

As identified in #1727, there may be multiple fields of CycloneDX BOMs that we currently don't ingest or display.

### Proposed Behavior:

Assess DT's coverage of CycloneDX v1.4 fields and add support for ingesting and displaying missing fields.

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.