DependencyTrack / DependencyTrack/dependency-track

Global vulnerability reports should allow filtering by tags

Open
#6,495 1 comment 1 reaction 0 assignees View on GitHub
enhancement p2 size/S
Dominant language
Java
Stars
4.2k
Forks
811
Avg merge
8h 39m
Merged PRs (30d)
237

Description

### Current Behavior

No filtering options by tags

### Proposed Behavior

The global vulnerability audit reports should have a tag filter that allows a user to limit the results to projects matching the selected tags.

Whether a project should match all tags or any tags could be also considered as an option. But having either variant would be a win.

### Checklist

- [x] I have read and understand the [contributing guidelines](https://github.com/DependencyTrack/dependency-track/blob/main/CONTRIBUTING.md#filing-issues)
- [x] I have checked the [existing issues](https://github.com/DependencyTrack/dependency-track/issues) for whether this enhancement was already requested

Contributor guide

Open the contributing guide

Research direction

Start by locating the global vulnerability audit report entry point and the existing project and tag filtering behavior. Decide whether matching should use all selected tags or any selected tags, then verify that the report results are limited accordingly with the relevant project or report tests.

Written by the indexing model from the issue text.

Assessment

Tech stack
java
Domain
security
Issue type
Feature
Difficulty
4/5
Estimated time
3-5 days
Activity status
Quiet
Clarity
Mostly clear
Newbie friendliness
48/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.