Skip to content

dependency-check/DependencyCheck-fork

View on GitHub ↗Related repositories →

OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.

active 2025-01-122025-02-16 (UTC)

Partial coverage20,529 / 26,285 hourly files (78%) · 2 absent upstream · 5,753 failed, retryable2023-08-152026-08-14 (UTC)— sampled evenly across the window, so rankings and trends hold; absolute counts scale up.
Events
5.3K
Pushes
0
Pull requests
0
Issues
5.1K
Stars
1
Forks
0

Activity over time

Daily event counts in the loaded window

Line chart, 36 days from 2025-01-12 to 2025-02-16. Pushes: 0 total, peak 0 in a day. Pull requests: 0 total, peak 0 in a day. Issues: 5,122 total, peak 1,636 in a day. Comments: 0 total, peak 0 in a day. Stars: 1 total, peak 1 in a day.

  • Pushes
  • Pull requests
  • Issues
  • Comments
  • Stars

Stars, PRs, issues and forks are under-captured in the later part of this window. GH Archive progressively stopped capturing non-push events during 2026 — −95% or worse by the end of the window. Every series here except Pushes fades for that reason, so a decline above reflects the archive, not this repository. Pushes stay reliable throughout, so read them, and the contributor counts derived from them, as the real signal. Data health has the measurements.

Top contributors

Pushes, PRs, issues, reviews and comments — stars and forks excluded, so this is contribution rather than popularity

ContributorContributionsPushesPRsComments
jeremylong5.1K000

Recent activity

Latest issues, pull requests and releases

  • Issue#7405jeremylong2025-02-15 11:58
    Gradle Android Studio - java.lang.NoSuchMethodError
  • Issue#7405jeremylong2025-02-15 11:58
    Gradle Android Studio - java.lang.NoSuchMethodError
  • Issue#7404jeremylong2025-02-15 11:58
    [FP]: False Positive on hazelcast-license-extractor (CVE-2020-26168)
  • Issue#7404jeremylong2025-02-15 11:58
    [FP]: False Positive on hazelcast-license-extractor (CVE-2020-26168)
  • Issue#7403jeremylong2025-02-15 11:58
    [FP]: False Positive on hazelcast-license-extractor (CVE-2016-10750)
  • Issue#7403jeremylong2025-02-15 11:58
    [FP]: False Positive on hazelcast-license-extractor (CVE-2016-10750)
  • Issue#7402jeremylong2025-02-15 11:58
    [FP]: Multiple False positives found in dependency check scan
  • Issue#7402jeremylong2025-02-15 11:58
    [FP]: Multiple False positives found in dependency check scan
  • Issue#7401jeremylong2025-02-15 11:57
    build(deps): bump golang from 1.23.6-alpine to 1.24.0-alpine
  • Issue#7401jeremylong2025-02-15 11:57
    build(deps): bump golang from 1.23.6-alpine to 1.24.0-alpine
  • Issue#7400jeremylong2025-02-15 11:57
    [FP]: Flagged for reporting false positive vulnerability on CVE-2021-41033
  • Issue#7400jeremylong2025-02-15 11:57
    [FP]: Flagged for reporting false positive vulnerability on CVE-2021-41033
  • Issue#7399jeremylong2025-02-15 11:57
    [FP]: CVE flagged for reporting the vulnerability on logback version in which it is already fixed.
  • Issue#7399jeremylong2025-02-15 11:57
    [FP]: CVE flagged for reporting the vulnerability on logback version in which it is already fixed.
  • Issue#7398jeremylong2025-02-15 11:57
    How to find out WHY a file is marked having a vulnerability
  • Issue#7398jeremylong2025-02-15 11:57
    How to find out WHY a file is marked having a vulnerability
  • Issue#7397jeremylong2025-02-15 11:56
    [FP]: CVE-2022-45688 flagged in jackson-core
  • Issue#7397jeremylong2025-02-15 11:56
    [FP]: CVE-2022-45688 flagged in jackson-core
  • Issue#7396jeremylong2025-02-15 11:56
    Viewing documentation for older versions
  • Issue#7396jeremylong2025-02-15 11:56
    Viewing documentation for older versions
  • Issue#7395jeremylong2025-02-15 11:56
    [FP]: graylog sink CVE-2021-37759
  • Issue#7395jeremylong2025-02-15 11:56
    [FP]: graylog sink CVE-2021-37759
  • Issue#7394jeremylong2025-02-15 11:55
    [FP]: graylog sink CVE-2024-24824
  • Issue#7394jeremylong2025-02-15 11:55
    [FP]: graylog sink CVE-2024-24824
  • Issue#7393jeremylong2025-02-15 11:55
    [FP]: graylog sink CVE-2021-37760

Totals cover only the window loaded into ClickHouse and count events, not GitHub's lifetime totals — 1 stars here means stars gained during the window, not the repo's star count.