Release-1.10.0
Feature
- SAST integration: Support SAST scanner to push vulnerabilities to scan vulnerabilities under the project
- SAST integration: supports the association of instrumented vulnerabilities and SAST scanning vulnerabilities
- Project configuration: Add project level modification log level and switch
- Custom rules: Added two options: Ignore Internal Call and Ignore Blacklist
- Fixed an issue where replay association based on file path similarity failed
- Fixed the problem that the original URL address for extracting vulnerabilities was invalid
- Fix the problem of highlight failure caused by abnormal data
- Fixed SSRF false positives not being properly excluded in the engine
- Fix the problem that the number of statistical items in the vulnerability display is incorrect due to the Agent being deleted
- Fixed the wrong binding problem caused by projects with the same name in multiple departments during Agent registration
- Updated the text of some vulnerability descriptions
What's Changed
- agent list event recording time by @Gedongy in #308
- Release 2.0.1 by @Gedongy in #309
- deploy version by @Gedongy in #310
- project add department_id by @Gedongy in #311
- about add token api by @Gedongy in #312
- prjectTemplate del time by @Gedongy in #313
- keepalive dynamic judge by @Gedongy in #314
- Remove ellipsis by @Gedongy in #315
- scan list&detail over by @Gedongy in #316
- scan list&detail over by @Gedongy in #317
- merge to develop branch by @Bidaya0 in #318
- number id for scan by @Gedongy in #319
- number id by @Gedongy in #320
- []nopush for scan by @Gedongy in #321
- payload add for scandetail by @Gedongy in #322
- addtemp by @nacyxue in #326
- add by @nacyxue in #328
- fixbug by @nacyxue in #329
- deleunavliabelcode by @nacyxue in #330
- 1.10.0beta2 by @Bidaya0 in #331
- Release 1.10.0 by @Bidaya0 in #332
New Contributors
Full Changelog: v1.9.2...v1.10.0