Application Dependency Management Overview

Application Dependency Management (ADM) detects security vulnerabilities in application dependencies.

Application Dependency Management (ADM) is a reporting and management service integrated with Oracle Cloud Infrastructure services to detect and remediate security vulnerabilities in your applications' dependencies. It relies on scores provided by the Common Vulnerability Scoring System: an open framework for communicating the characteristics and severity of software vulnerabilities.

As a customer you can:

  • Use Application Dependency Management to detect security vulnerabilities in your Java application.
  • Remediate your application's vulnerabilities by updating its dependencies to the most current secure versions.

Application Dependency Management helps developers, operations, devops, and support teams answer questions such as:

  • What dependencies does my application have?
  • Which of those dependencies contains a security vulnerability?

Application Dependency Management requires no changes to your current development and deployment tools. It supports the following source code management tools:

  • OCI Devops Repositories (hosted, not mirrored)
  • GitHub
  • GitLab
  • BitBucket Cloud as well as BitBucket Server/Data center

Application Dependency Management supports the following build tools:

  • OCI DevOps Build Pipelines
  • GitHub Actions
  • GitLab Pipelines
  • Jenkins Pipelines

ADM helps members of development, operations, devops, and support teams answer questions such as:

  • What dependencies does my application have?
  • Which of those dependencies contains a current known security vulnerability?