From 89a80f62e71798b477d56f51a386192ed9cfd413 Mon Sep 17 00:00:00 2001 From: dotasek Date: Tue, 10 Dec 2024 16:58:48 -0500 Subject: [PATCH] Use NVD_API_KEY --- .github/workflows/owasp.yml | 10 ++++++++-- pom.xml | 1 + 2 files changed, 9 insertions(+), 2 deletions(-) diff --git a/.github/workflows/owasp.yml b/.github/workflows/owasp.yml index 238b77a4..8625e316 100644 --- a/.github/workflows/owasp.yml +++ b/.github/workflows/owasp.yml @@ -17,10 +17,16 @@ jobs: - name: Checkout repository uses: actions/checkout@v4 - - run: | + - env: + NVD_API_KEY: + ${{ secrets.NVD_API_KEY }} + run: | mvn -DskipTests install -P OWASP_CHECK - - run: | + - env: + NVD_API_KEY: + ${{ secrets.NVD_API_KEY }} + run: | mvn -DskipTests dependency-check:aggregate -P OWASP_CHECK - name: Upload SARIF file diff --git a/pom.xml b/pom.xml index b15e1e51..117ed003 100644 --- a/pom.xml +++ b/pom.xml @@ -314,6 +314,7 @@ dependency-check-maven 11.1.1 + NVD_API_KEY cve-suppression.xml