Working with Components

Software Risk Manager provides a comprehensive list of a project's components that can be accessed through the Findings page.

Open a project's Findings page, then select the Components tab to display a list of that project's components.


The component view shows all of the components that are part of the project, regardless of the status of any individual finding. (Use the filters to the left of the list to search; click the column headings to sort.)

The Component page provides the following information:
  • Component Name
  • Version
  • Match Type (direct or transitive dependency)
  • License Name
  • License Family

Click the component name to open the Component Details and Security Details view for that specific component.

Select the Component Details tab to view detailed information about the component.


The Component Details tab provides the following information:
  • Security Risk
  • Component Name
  • Component Description
  • Component Links
  • Component Origins
  • Upgrade Guidance
Select the Security Details tab to view additional security information about the component.


The Security Details tab provides the following information:
  • Security Risk
  • Component Name
  • Finding ID
  • Vulnerability ID
  • Vulnerability Score
  • Status
Note: If the project is configured with a component correlation mode that doesn't include vulnerability, then the Vulnerability ID and Vulnerability Score columns won't appear in the table. (For more information, see Analysis Configuration Options.)