What's New
This release of FortiDevSec includes the following new features.
Feature |
Description |
---|---|
Software Composition Analysis(SCA) scanner enhancements |
The FortiDevSec SCA scanner supports the following additional programming languages:
Note: After the upgrade to FortiDevSec version 22.4, any scan results/data from the previous versions of the SCA scanner is lost. |
Fail a CI/CD pipeline using the risk rating parameter |
The fail_pipeline is an optional parameter added to the configuration file (fdevsec.yaml). It is used to fail a CI/CD pipeline based on the risk tolerance level of your organization. This feature is currently verified for Jenkins, GitLab and GitHub Actions CI/CD pipelines. |