mirror of
https://github.com/aquasecurity/trivy.git
synced 2025-12-23 15:37:50 -08:00
fix(java): don't ignore runtime scope for pom.xml files (#6223)
This commit is contained in:
@@ -381,7 +381,7 @@ func (p *parser) parseDependencies(deps []pomDependency, props map[string]string
|
||||
// Resolve dependencies
|
||||
d = d.Resolve(props, depManagement, rootDepManagement)
|
||||
|
||||
if (d.Scope != "" && d.Scope != "compile") || d.Optional {
|
||||
if (d.Scope != "" && d.Scope != "compile" && d.Scope != "runtime") || d.Optional {
|
||||
continue
|
||||
}
|
||||
|
||||
|
||||
Reference in New Issue
Block a user