From 58ec6755fc0a089ae59a1103cd432d63c2ad3d95 Mon Sep 17 00:00:00 2001 From: Matteo De Marie Date: Thu, 1 Feb 2024 14:58:26 +0100 Subject: [PATCH] Improve GitHub vulnerability adding affected version --- dojo/tools/github_vulnerability/parser.py | 3 +++ 1 file changed, 3 insertions(+) diff --git a/dojo/tools/github_vulnerability/parser.py b/dojo/tools/github_vulnerability/parser.py index 15bf37606c9..5a46355c4a5 100644 --- a/dojo/tools/github_vulnerability/parser.py +++ b/dojo/tools/github_vulnerability/parser.py @@ -81,6 +81,9 @@ def get_findings(self, filename, test): "package" ].get("name") + if "vulnerableVersionRange" in alert["securityVulnerability"]: + finding.component_version = alert["securityVulnerability"]["vulnerableVersionRange"] + if "references" in alert["securityVulnerability"]["advisory"]: finding.references = "" for ref in alert["securityVulnerability"]["advisory"][