You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
A recent scan of jqlang/jq identified 20 dependencies. Six of these were from Pipfile and were identified without version number; 14 of these were from Pipfile.lock and were identified with specific versions. The scan failed to identify a package in the modules directory of the project.
The non-versioned packages are not useful and can also result in false-positive vulnerability discoveries.
A recent scan of jqlang/jq identified 20 dependencies. Six of these were from
Pipfile
and were identified without version number; 14 of these were fromPipfile.lock
and were identified with specific versions. The scan failed to identify a package in themodules
directory of the project.The non-versioned packages are not useful and can also result in false-positive vulnerability discoveries.
The modules should be identified as dependencies.
Scan results attached.
scancodeio_jqlang-test2.json
The text was updated successfully, but these errors were encountered: