DependencyTrack / DependencyTrack/dependency-track
Global vulnerability reports should allow filtering by tags
- Dominant language
- Java
- Stars
- 4.2k
- Forks
- 811
- Avg merge
- 8h 39m
- Merged PRs (30d)
- 237
Description
### Current Behavior
No filtering options by tags
### Proposed Behavior
The global vulnerability audit reports should have a tag filter that allows a user to limit the results to projects matching the selected tags.
Whether a project should match all tags or any tags could be also considered as an option. But having either variant would be a win.
### Checklist
- [x] I have read and understand the [contributing guidelines](https://github.com/DependencyTrack/dependency-track/blob/main/CONTRIBUTING.md#filing-issues)
- [x] I have checked the [existing issues](https://github.com/DependencyTrack/dependency-track/issues) for whether this enhancement was already requested
Contributor guide
Research direction
Start by locating the global vulnerability audit report entry point and the existing project and tag filtering behavior. Decide whether matching should use all selected tags or any selected tags, then verify that the report results are limited accordingly with the relevant project or report tests.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- java
- Domain
- security
- Issue type
- Feature
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Quiet
- Clarity
- Mostly clear
- Newbie friendliness
- 48/100