Dependency Track for SonarQube is a plugin that allows you to check the number of vulnerabilities in your code without leaving your SonarQube™ instance.
This product adds a first section where you will find a view card with the summary of the number of vulnerabilities and components of a particular project, accompanied by
of its corresponding Risk Score.
Next, you will find a second card with the list of vulnerabilities, broken down by severity (critical, high, medium, low and unassigned) and type of vulnerability.
If you want to test this product in your instance, you can download it here:
The main features of Dependency Track for SonarQube™ are as follows:
- Identify the risks and vulnerabilities of your project at a glance.
- Know what is affected and where in your code.
- Review vulnerabilities by severity.
- Visual and rapid representation of information.
In this video we show you the interface of this product, how it works and how to configure it.
Evaluation license
600 €/year