Skip to content

Bump spotbugs major version

What does this MR do and why?

This MR updates the Spotbugs SAST analyzer image to the latest major version v6 for the latest CI template

v6 was released in Add JDK21 and remove JDK11 (gitlab-org/security-products/analyzers/spotbugs!243 - merged)

However, as v6 contains a breaking change that was not approved, we will only be updating latest CI template to v6 while keeping the stable CI template as v5. Full details in this comment.

References

Update spotbugs major version in SAST templates (#517169 - closed)

Screenshots or screen recordings

Before After

How to set up and validate locally

MR acceptance checklist

Evaluate this MR against the MR acceptance checklist. It helps you analyze changes to reduce risks in quality, performance, reliability, security, and maintainability.

Edited by Shao Ming Tan

Merge request reports

Loading