Improve scan performance and reduce false positives for Bandit rules B610, B110, B112 (!183)
SASTBot: Monthly dependency updates for 15.6 (!177)
Revert: Upgrade base image to ubi9-minimal in FIPS variant of Dockerfile (!180)
Refine latest bandit rules from sast-rules repository into Semgrep (!179)
Upgrade base image to ubi9-minimal in FIPS variant of Dockerfile (!175)
SASTBot: Monthly dependency updates for %15.6 (!162)
Fix FP patterns in SQL Injection and Hardcoded Password in Java (!172)
Populates the `cve` field of each vulnerability finding (!169)
Upgrade gitlab.com/gitlab-org/security-products/analyzers/report to v3.15.5 (!168)
Switch to use ubi8-minimal as the base FIPS image (!165)
Include `scan.analyzer` in JSON report output (!159)
Bump go-fips builder image to 1.18 (!161)
Upgrade to the latest security-code-scan ruleset 1.0.67 (!156)
Include missing security-code-scan identifiers (!152)
Adding Csharp support and security-code-scan ruleset (!137)
SASTBot: Monthly dependency updates for %15.3 (!140)
- Upgrade the `command` package (!141)