Release-1.10.0
Feature
- SAST integration: Support SAST scanner to push vulnerabilities to scan vulnerabilities under the project
- SAST integration: supports the association of instrumented vulnerabilities and SAST scanning vulnerabilities
- Project configuration: Add project level modification log level and switch
- Custom rules: Added two options: Ignore Internal Call and Ignore Blacklist
- Fixed an issue where replay association based on file path similarity failed
- Fixed the problem that the original URL address for extracting vulnerabilities was invalid
- Fix the problem of highlight failure caused by abnormal data
- Fixed SSRF false positives not being properly excluded in the engine
- Fix the problem that the number of statistical items in the vulnerability display is incorrect due to the Agent being deleted
- Fixed the wrong binding problem caused by projects with the same name in multiple departments during Agent registration
- Updated the text of some vulnerability descriptions
What's Changed
- adopt develop branch again. by @Bidaya0 in #1324
- fix/bandit-tarfile-temp-fix by @Bidaya0 in #1325
- feat: update CI by @tscuite in #1329
- feat: update CI by @tscuite in #1330
- feat: update CI by @tscuite in #1331
- Develop by @tscuite in #1334
- feat: add beta、develop by @tscuite in #1335
- feat: add beta、develop by @tscuite in #1336
- feat: add beta、develop by @tscuite in #1337
- feat: add pr by @tscuite in #1338
- Develop by @tscuite in #1339
- feat: add pr by @tscuite in #1340
- fix: projecttemplate update . by @Bidaya0 in #1342
- fix: fix typing check in filepath handler. by @Bidaya0 in #1326
- fix: change logging level to reduce log cost. by @Bidaya0 in #1341
- fix: celery issue 7091. by @Bidaya0 in #1327
- feat: update release by @tscuite in #1343
- Test/add xss example data into testcase by @Bidaya0 in #1332
- fix: change logging level to reduce log cost. by @Bidaya0 in #1344
- Feat/integrate with dast by @Bidaya0 in #1345
- feat: integrate with dast. by @Bidaya0 in #1346
- Feat/integrate with dast fix 3 by @Bidaya0 in #1347
- Feat/integrate with dast fix 4 by @Bidaya0 in #1348
- feat: integrate with dast. by @Bidaya0 in #1349
- fix: endpoint api log . by @Bidaya0 in #1351
- fix/url_location_with_original_path by @Bidaya0 in #1353
- feat: vul_relation by @Bidaya0 in #1352
- Feat/vul relation manage by @Bidaya0 in #1354
- Feat/vul relation curd by @Bidaya0 in #1358
- Feat/project level log by @Bidaya0 in #1359
- Feat/project level log p2 by @Bidaya0 in #1361
- fix: add new level by @Bidaya0 in #1362
- fix: add new level by @Bidaya0 in #1363
- fix: fix unit test in dastvul . by @Bidaya0 in #1364
- Fix/new sca lib p4 by @Bidaya0 in #1366
- build(deps): bump redis from 3.5.3 to 4.5.3 by @dependabot in #1365
- Fix/unittest runs/4539246532/jobs/7998939141 by @Bidaya0 in #1367
- Feat/hook strategy data by @Bidaya0 in #1368
- fix: project level log by @Bidaya0 in #1371
- feat:add new hook_strategy field. by @Bidaya0 in #1370
- fix: fix vul_datail graph missing when highlight indexerror. by @Bidaya0 in #1373
- fix: agent config 500 when agent not found by @Bidaya0 in #1369
- Fix/ssrf fix and testcase add by @Bidaya0 in #1372
- Fix/normal vuln distinct by @Bidaya0 in #1374
- Fix/dast vul relation bind by @Bidaya0 in #1375
- fix: dast vul relation bind by @Bidaya0 in #1376
- Fix/dast vul relation bind p2 by @Bidaya0 in #1377
- Fix/dast vul relation bind p2 by @Bidaya0 in #1380
- fix: dast vul relation bind by @Bidaya0 in #1381
- Fix/dast vul relation bind p3 by @Bidaya0 in #1382
- fix: project_count error after agent delete by @Bidaya0 in #1383
- feat: new project version and api search by @Bidaya0 in #1388
- Feat/new vul descrition by @Bidaya0 in #1389
- fix: bug in /4592842052/jobs/8110235340 by @Bidaya0 in #1390
- fix: fix vul_datail graph missing when highlight indexerror. by @Bidaya0 in #1379
- Fix/ssrf fix and testcase add by @Bidaya0 in #1378
- Fix/action/runs/4593781591/jobs/8112057145 by @Bidaya0 in #1392
- Fix/parse response header by @Bidaya0 in #1393
- fix: agent bind project error when project department change by @Bidaya0 in #1395
- fix: agent bind project error when project department change by @Bidaya0 in #1396
- fix: agent bind project error when project department change by @Bidaya0 in #1398
- build(deps): bump redis from 3.5.3 to 4.4.4 by @dependabot in #1386
- feat/update-strategy-1.10 by @Bidaya0 in #1402
- build(deps): bump redis from 3.5.3 to 4.4.4 by @dependabot in #1403
Full Changelog: v1.9.3...v1.10.0