Display provenance of CVE-derivation match in suggestion list #302

Open
opened 2024-10-31 09:53:52 +00:00 by erictapen · 0 comments
erictapen commented 2024-10-31 09:53:52 +00:00 (Migrated from github.com)

As a security team member, I want to be able to understand, how a certain suggestion was build by the suggestion engine. I want to understand wether the match was based on

As a security team member, I want to be able to understand, how a certain suggestion was build by the suggestion engine. I want to understand wether the match was based on - product name / derivation name - CVE description / package description: https://github.com/Nix-Security-WG/nix-security-tracker/issues/190 - Versions matching/not matching: https://github.com/Nix-Security-WG/nix-security-tracker/issues/189
Sign in to join this conversation.
No description provided.