Uses jeremylong/DependencyCheck to search Gradle for CVE vulnerabilites. It must be setup on the project before a first run
The generated report will be placed into $BITRISE_DEPLOY_DIR by default. Remember to run the "Deploy to bitrise.io" step in order to persist artifacts.