Dependency-Check is an open source tool performing a best effort analysis of 3rd party dependencies;
false positives and false negatives may exist in the analysis performed by the tool. Use of the tool and
the reporting provided constitutes acceptance for use in an AS IS condition, and there are NO warranties,
implied or otherwise, with regard to the analysis or its use. Any use of the tool and the reporting provided
is at the user’s risk. In no event shall the copyright holder or OWASP be held liable for any damages whatsoever
arising out of or in connection with the use of this tool, the analysis performed, or the resulting report.
Description: A Java class library for graph-theory data structures and algorithms.
License:
GNU Lesser General Public License Version 2.1, February 1999: http://jgrapht.sourceforge.net/LGPL.html
Eclipse Public License (EPL) 1.0: http://www.eclipse.org/legal/epl-v10.html
Description:
This is the spring agnostic 'meat' of the project. It models and analyzes a graph of declarations of object (bean)
definitions, as well as the graph of the objects (beans) themselves.
This project should be reusable in CDI or any other DI/IoC annotation based system.
This is the spring agnostic 'meat' of the project. It models and analyzes a graph of declarations of object (bean) definitions, as well as the graph of the objects (beans) themselves. This project should be reusable in CDI or any other DI/IoC annotation based system.
Low
Vendor
jar
package name
salesforce
Low
Vendor
pom
artifactid
AptSpringModel
Low
Vendor
pom
parent-artifactid
AptSpringParent
Low
Vendor
jar
package name
graph
Low
Vendor
jar
package name
apt
Low
Vendor
pom
groupid
com.salesforce.aptspring
Highest
Vendor
pom
name
${project.artifactId}
High
Product
jar
package name
model
Low
Product
file
name
AptSpringModel
High
Product
pom
parent-groupid
com.salesforce.aptspring
Low
Product
pom
description
This is the spring agnostic 'meat' of the project. It models and analyzes a graph of declarations of object (bean) definitions, as well as the graph of the objects (beans) themselves. This project should be reusable in CDI or any other DI/IoC annotation based system.
Description: A Java class library for graph-theory data structures and algorithms.
License:
GNU Lesser General Public License Version 2.1, February 1999: http://jgrapht.sourceforge.net/LGPL.html
Eclipse Public License (EPL) 1.0: http://www.eclipse.org/legal/epl-v10.html
Description:
This project contains one class, a marking annotation, @Verify, that indicates that the AptSpringProcessor should
verify a spring graph. All checks are fully enumerated in @Verify's javadoc.
This project contains one class, a marking annotation, @Verify, that indicates that the AptSpringProcessor should verify a spring graph. All checks are fully enumerated in @Verify's javadoc.
Low
Vendor
pom
groupid
com.salesforce.aptspring
Highest
Vendor
pom
name
${project.artifactId}
High
Product
jar
package name
verified
Low
Product
jar
package name
aptspring
Low
Product
pom
parent-groupid
com.salesforce.aptspring
Low
Product
file
name
AptSpringAPI
High
Product
pom
description
This project contains one class, a marking annotation, @Verify, that indicates that the AptSpringProcessor should verify a spring graph. All checks are fully enumerated in @Verify's javadoc.