github DependencyTrack/dependency-track 4.12.1

14 hours ago

For official releases, refer to Dependency Track Docs >> Changelogs for information about improvements and upgrade notes.
If additional details are required, consult the closed issues for this release milestone.

# SHA1
18911ef4fa28531d97293bd70de2ebb4033e5b5c  dependency-track-apiserver.jar
b3f3eb8cb5c8021ba7bdb37a5717cd2672550385  dependency-track-bundled.jar
# SHA256
682a3ffe268c59b0df03a55fd72b56d46299db3fd2cfe081966d8d57fbbea4f6  dependency-track-apiserver.jar
dc1a3e65e8ce767e39925bf329be8eff29ff09eebc627db8efd0e1b5ff6db573  dependency-track-bundled.jar
# SHA512
ab990553ea288960089441746908410a886453c5e0e3bc3f0752c27951a2e51adce7f8a02b29ac06fa8d99a17e7be74afd5af3436c92f2d37a2f64ec414cebd2  dependency-track-apiserver.jar
a03cef2139f90aeb8de2a037af5dbd374270c97460f60241cb4d5bddcec497e8581ba89d1a9f027066a275f921e88d39265ae7d9efec1f47af5e15566db247a6  dependency-track-bundled.jar

What's Changed

Bug Fixes 🐛

  • Backport: Fix logs not containing usernames of deleted users by @nscuro (original change by @Gepardgame) in #4232
  • Backport: Fix unintended manual flushing mode due to DataNucleus ExecutionContext pooling by @nscuro in #4233
  • Backport: Prevent duplicate policy violations by @nscuro in #4234
  • Backport: Enhance policy violation de-duplication logic by @nscuro in #4235
  • Backport: Fix inaccuracies of Trivy analyzer by @nscuro in #4258
  • Backport: Fix redundant query for "ignore unfixed" config during Trivy analysis by @nscuro in #4259
  • Backport: Fix excessive memory usage of portfolio repository meta analysis by @nscuro in #4317

Dependency Updates 🤖

  • Backport: Bump cyclonedx-core-java to 9.1.0 by @nscuro in #4271
  • Backport: Bump Alpine to 3.1.1 by @nscuro in #4309
  • Backport: Bump Temurin base image to 21.0.5_11 by @nscuro in #4315
  • Backport: Bump bundled frontend to 4.12.1 by @nscuro in #4319

Other Changes

Full Changelog: 4.12.0...4.12.1

Don't miss a new dependency-track release

NewReleases is sending notifications on new releases.