Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Dependency-Track Should Perform Update Check #3638

Open
2 tasks done
msymons opened this issue Apr 23, 2024 · 2 comments
Open
2 tasks done

Dependency-Track Should Perform Update Check #3638

msymons opened this issue Apr 23, 2024 · 2 comments
Assignees
Labels
enhancement New feature or request p2 Non-critical bugs, and features that help organizations to identify and reduce risk size/M Medium effort
Milestone

Comments

@msymons
Copy link
Member

msymons commented Apr 23, 2024

Current Behavior

Unlike many CI/CD servers (eg Jenkins, SonarQube, Nexus Reposiitory Manager), Dependency-Track does not inform the administrator when a new version of DT is available.

Proposed Behavior

Dependency-Track should perform a regular check for latest version and clearly inform the administrator when an update is available.

If implemented in 4.12 and running 4.12, the MVP would be to inform that 4.12.1 or 4.13 is available. Ideally, the notification might separately also state that 5.0.0 is available... eg, inform of "minor/patch version update available" AND "major version update available"

The notification should also include a link (links) to release notes.

Checklist

@msymons msymons added the enhancement New feature or request label Apr 23, 2024
@msymons msymons added this to the 4.12 milestone Apr 23, 2024
@nscuro
Copy link
Member

nscuro commented Apr 29, 2024

Assigning this to myself, since this requires some organizational stuff to be sorted out. Mainly, we need a publicly accessible endpoint, hosted on the OWASP foundation's cloud infra.

@nscuro nscuro self-assigned this Apr 29, 2024
@nscuro nscuro added p2 Non-critical bugs, and features that help organizations to identify and reduce risk size/M Medium effort labels Apr 29, 2024
@rkg-mm
Copy link
Contributor

rkg-mm commented May 10, 2024

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request p2 Non-critical bugs, and features that help organizations to identify and reduce risk size/M Medium effort
Projects
None yet
Development

No branches or pull requests

3 participants