ACR Rules

  1. Home
  2. Docs
  3. ACR Rules
  4. Security (28)
  5. Use user libraries without security vulnerabilities

Use user libraries without security vulnerabilities

Introduced in version 2.6 (released August 2021)

We introduced a new feature called Java Libraries. Now ACR reviews the user libraries in your application against known vulnerabilities. This rule reports vulnerabilities above a configurable level as violations. By default, all vulnerabilities classified as high or critical are reported as violations.

You find more information on the actual security vulnerability in our Java libraries feature:

Violation overview with an arrow pointing to java libraries feature.