SpotBugs timeout error in SAST
Customer Bug
SAST scanning also has a timeout when it tries to download spotbugs when pulling the Docker image.
There’s a 538M layer in that container (555c88d0655f) and it seems the scanning simply times out waiting for it to download. Download rates are pretty slow from registry.gitlab.com for me so that’s likely the problem.
Whatever changed between version 1.5.0 and version 2 of that container added 370M of stuff.
Edited by Sam Kerr