OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.
active 2025-01-12 → 2025-02-16 (UTC)
Activity over time
Daily event counts in the loaded window
Line chart, 36 days from 2025-01-12 to 2025-02-16. Pushes: 0 total, peak 0 in a day. Pull requests: 0 total, peak 0 in a day. Issues: 5,122 total, peak 1,636 in a day. Comments: 0 total, peak 0 in a day. Stars: 1 total, peak 1 in a day.
- Pushes
- Pull requests
- Issues
- Comments
- Stars
Stars, PRs, issues and forks are under-captured in the later part of this window. GH Archive progressively stopped capturing non-push events during 2026 — −95% or worse by the end of the window. Every series here except Pushes fades for that reason, so a decline above reflects the archive, not this repository. Pushes stay reliable throughout, so read them, and the contributor counts derived from them, as the real signal. Data health has the measurements.
Top contributors
Pushes, PRs, issues, reviews and comments — stars and forks excluded, so this is contribution rather than popularity
| Contributor | Contributions | Pushes | PRs | Comments |
|---|---|---|---|---|
| jeremylong | 5.1K | 0 | 0 | 0 |
Recent activity
Latest issues, pull requests and releases
- Issue#7405jeremylong2025-02-15 11:58Gradle Android Studio - java.lang.NoSuchMethodError
- Issue#7405jeremylong2025-02-15 11:58Gradle Android Studio - java.lang.NoSuchMethodError
- Issue#7404jeremylong2025-02-15 11:58[FP]: False Positive on hazelcast-license-extractor (CVE-2020-26168)
- Issue#7404jeremylong2025-02-15 11:58[FP]: False Positive on hazelcast-license-extractor (CVE-2020-26168)
- Issue#7403jeremylong2025-02-15 11:58[FP]: False Positive on hazelcast-license-extractor (CVE-2016-10750)
- Issue#7403jeremylong2025-02-15 11:58[FP]: False Positive on hazelcast-license-extractor (CVE-2016-10750)
- Issue#7402jeremylong2025-02-15 11:58[FP]: Multiple False positives found in dependency check scan
- Issue#7402jeremylong2025-02-15 11:58[FP]: Multiple False positives found in dependency check scan
- Issue#7401jeremylong2025-02-15 11:57build(deps): bump golang from 1.23.6-alpine to 1.24.0-alpine
- Issue#7401jeremylong2025-02-15 11:57build(deps): bump golang from 1.23.6-alpine to 1.24.0-alpine
- Issue#7400jeremylong2025-02-15 11:57[FP]: Flagged for reporting false positive vulnerability on CVE-2021-41033
- Issue#7400jeremylong2025-02-15 11:57[FP]: Flagged for reporting false positive vulnerability on CVE-2021-41033
- Issue#7399jeremylong2025-02-15 11:57[FP]: CVE flagged for reporting the vulnerability on logback version in which it is already fixed.
- Issue#7399jeremylong2025-02-15 11:57[FP]: CVE flagged for reporting the vulnerability on logback version in which it is already fixed.
- Issue#7398jeremylong2025-02-15 11:57How to find out WHY a file is marked having a vulnerability
- Issue#7398jeremylong2025-02-15 11:57How to find out WHY a file is marked having a vulnerability
- Issue#7397jeremylong2025-02-15 11:56[FP]: CVE-2022-45688 flagged in jackson-core
- Issue#7397jeremylong2025-02-15 11:56[FP]: CVE-2022-45688 flagged in jackson-core
- Issue#7396jeremylong2025-02-15 11:56Viewing documentation for older versions
- Issue#7396jeremylong2025-02-15 11:56Viewing documentation for older versions
- Issue#7395jeremylong2025-02-15 11:56[FP]: graylog sink CVE-2021-37759
- Issue#7395jeremylong2025-02-15 11:56[FP]: graylog sink CVE-2021-37759
- Issue#7394jeremylong2025-02-15 11:55[FP]: graylog sink CVE-2024-24824
- Issue#7394jeremylong2025-02-15 11:55[FP]: graylog sink CVE-2024-24824
- Issue#7393jeremylong2025-02-15 11:55[FP]: graylog sink CVE-2021-37760
Totals cover only the window loaded into ClickHouse and count events, not GitHub's lifetime totals — 1 stars here means stars gained during the window, not the repo's star count.