DependencyTrack / DependencyTrack/dependency-track
Adding EPSS score columns to Vulnerability Audit view
- Dominant language
- Java
- Stars
- 4.2k
- Forks
- 811
- Avg merge
- 8h 39m
- Merged PRs (30d)
- 237
Description
### Current Behavior
Currently the EPSS score is displayed only in the component vulnerabilities view and the Exploit Predictions view.
### Proposed Behavior
Add the **EPSS score** as a column in the **Audit vulnerabilities view** for all the components
### Checklist
- [x] I have read and understand the [contributing guidelines](https://github.com/DependencyTrack/dependency-track/blob/main/CONTRIBUTING.md#filing-issues)
- [x] I have checked the [existing issues](https://github.com/DependencyTrack/dependency-track/issues) for whether this enhancement was already requested
Contributor guide
Research direction
Locate the Audit vulnerabilities view and inspect how EPSS scores are shown in the component vulnerabilities and Exploit Predictions views. Add the EPSS score as a column for all components, then verify that the Audit vulnerabilities view displays it consistently.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- java
- Domain
- frontend, security
- Issue type
- Feature
- Difficulty
- 3/5
- Estimated time
- 1-2 days
- Activity status
- Active
- Clarity
- Mostly clear
- Newbie friendliness
- 68/100