Home:ALL Converter>Using Sonarqube, can I get alert when there is a CVE on a dependency

Using Sonarqube, can I get alert when there is a CVE on a dependency

Ask Time:2022-09-29T14:42:50         Author:Jean

Json Formatter

Using Sonarqube, can I get alert when there is a CVE on a dependency ? I track software quality on Sonarqube and I have read about the dependency check integration. But it seems quite different from the dependency track platform where notifications can be triggered when a CVE affect a previous release.

Is CVE notifications on older releases available in SonarQube (with or without plugins)

Author:Jean,eproduced under the CC 4.0 BY-SA copyright license with a link to the original source and this disclaimer.
Link to original article:https://stackoverflow.com/questions/73891289/using-sonarqube-can-i-get-alert-when-there-is-a-cve-on-a-dependency
yy