← All tasks
javadependency-check/DependencyCheck #7759Not a task: already works

WARNINGs when executing analysis with Java 21

envgap__dependency-check__DependencyCheck-7759

01 / FAILURE SIGNATURE

As reported upstream

No identifying execution failure has been captured.
Not a benchmark task.
  • The project already builds and runs before the fix, so there is nothing to repair.

02 / ENVIRONMENT RECIPE

Base commit
de466253b224d49e058ba0550965151436d698d2
Manifest
cli/pom.xml
Reproduce
Awaiting issue-specific recipe
Run under trace
Awaiting a meaningful runtime command

03 / ORIGINAL ISSUE TEXT

dependency-check/DependencyCheck #7759 · read the original issue
**Precondition**
- [x] I checked the issues list for existing open or closed reports of the same problem.

**Describe the bug**
When executing dep-check with OpenJDK 21 to perform analysis WARNING messages are output:ed. The analysis succeeds though.

**Version of dependency-check used**
The problem occurs using version 12.1.3 of the cli with Java 21 (OpenJDK).

**Log file**
[(https://gist.github.com/andham/bc79e1f8ee3435bbf19ec00cb9d6a8c6)](https://gist.github.com/andham/bc79e1f8ee3435bbf19ec00cb9d6a8c6)

**To Reproduce**
Steps to reproduce the behavior:
1. Install Java 21
2. Pre-update dep-check
3. Execute analysis: dependency-check.sh --noupdate --disableCentral --disableNodeAudit --disableYarnAudit --disableOssIndex --disableAssembly --scan ./target/xxx.ear

**Expected behavior**
Analysis without WARNINGs.

**Additional context**
Java 21 is currently the latest LTS version. In a few months Java 25 (LTS) is released. LTS versions should work without issues.
Continue on GitHub ↗

04 / LABELS

Labels from the report text only; not yet run

No supported category has been assigned.

Label rules and the text that matched
[]