Unified Agent - Why are the Maven Scopes 'test' and 'provided' Ignored in the Default Scanner Configuration?
These two scopes are excluded because they aren't generally included in the final build or necessary for the application to run. Mend is meant to check only for dependencies that present a threat on legal or security side. As these two scopes are not included in a production build, they are not exploitable.