Draft: SASTBot: Monthly dependency updates for 16.7
requested to merge gitlab-org/security-products/analyzers/sast-bot/spotbugs-forked:sast-bot-903 into master
What does this MR do?
- upgrade
Spotbugs
version [4.7.3
=>4.8.1
] - upgrade
gitlab.com/gitlab-org/security-products/analyzers/report/v4
version [v4.2.0
=>v4.3.1
]
CHANGELOG is generated by SASTBot.
What are the relevant issue numbers?
- +
Does this MR meet the acceptance criteria?
-
Changelog entry added -
Documentation created/updated for GitLab EE, if necessary -
Documentation created/updated for this project, if necessary -
Documentation reviewed by technical writer or follow-up review issue created -
Tests added for this feature/bug -
Job definition updated, if necessary -
Conforms to the code review guidelines -
Conforms to the Go guidelines -
Security reports checked/validated by reviewer