https://github.com/junit-team/junit5.git
· scanned 2026-05-16 11:56 UTC (1 day, 10 hours ago)
· 10 languages
89 findings (14 legacy + 75 scanner) Scanner says 96 (lower by 20)
Last scanned 1 day, 10 hours ago · v3 · 38 findings from 2 sources. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
Showing 31 of 38 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
junit-platform-reporting/src/main/java/org/junit/platform/reporting/open/xml/GitInfoCollector.java:110
ssrflegacy
.github/workflows/_publish.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/ci.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/ossf-scorecard.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/release.yml
supply-chaingithub-actionsleast-privilege
.github/workflows/gradle-dependency-submission.yml
supply-chaingithub-actionsleast-privilege
junit-jupiter-engine/src/main/java/org/junit/jupiter/engine/descriptor/MethodExtensionContext.java:29
qualitylegacy
junit-jupiter-engine/src/main/java/org/junit/jupiter/engine/descriptor/JupiterEngineExtensionContext.java:43
qualitylegacy
junit-jupiter-engine/src/main/java/org/junit/jupiter/engine/descriptor/JupiterEngineExtensionContext.java:19
qualitylegacy
junit-jupiter-engine/src/main/java/org/junit/jupiter/engine/descriptor/DynamicExtensionContext.java:44
qualitylegacy
junit-jupiter-engine/src/main/java/org/junit/jupiter/engine/descriptor/ClassTemplateInvocationExtensionContext.java:20
qualitylegacy
junit-jupiter-api/src/main/java/org/junit/jupiter/api/AssertThrowsExactly.java:30
qualitylegacy
This page is publicly accessible at:
https://repobility.com/scan/45a36d70-01b0-4b5b-9ba6-85f148bda10b/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/45a36d70-01b0-4b5b-9ba6-85f148bda10b/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.