Skip to content

Add omitempty to cve field for SAST reports

James Liu requested to merge jliu-omitempty-cve into main

What does this MR do?

Adds omitempty to the cve field to align with the intent of the v15 security report schema. The cve field is deprecated and should not be populated by analysers producing v15-compliant reports.

This had originally been implemented in !38 (diffs) but then reverted as part of !48 (merged) to retain v14 support.

What are the relevant issue numbers?

Does this MR meet the acceptance criteria?

Edited by James Liu

Merge request reports

Loading