Skip to content

fix: allow prefix matchers for CPE 2.2 URIs to strictly match a whole part only#8530

Closed
chadlwilson wants to merge 2 commits into
dependency-check:mainfrom
chadlwilson:fix-conservative-cpe-suppressions
Closed

fix: allow prefix matchers for CPE 2.2 URIs to strictly match a whole part only#8530
chadlwilson wants to merge 2 commits into
dependency-check:mainfrom
chadlwilson:fix-conservative-cpe-suppressions

Conversation

@chadlwilson
Copy link
Copy Markdown
Collaborator

No description provided.

…matching

Signed-off-by: Chad Wilson <29788154+chadlwilson@users.noreply.github.com>
Matching rules with a trailing : indicate a strict match of the last part is intended; rather than potentially matching only a substring of the part (usually an application name)

Signed-off-by: Chad Wilson <29788154+chadlwilson@users.noreply.github.com>
@boring-cyborg boring-cyborg Bot added core changes to core tests test cases labels May 20, 2026
@chadlwilson
Copy link
Copy Markdown
Collaborator Author

I intended to open this against my fork, as it's still WIP, but no harm here for now.

@chadlwilson chadlwilson deleted the fix-conservative-cpe-suppressions branch May 21, 2026 06:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

core changes to core tests test cases

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant