aboutcode-org / aboutcode-org/vulnerablecode

Provide link to GMS Aliases in UI (and API)

オープン
#1,182 コメント 0 件 リアクション 0 件 担当者 0 名 GitHub で見る
主要言語
Python
スター
702
フォーク
328
平均マージ
3日 8時間
マージ済み PR(30日)
3

説明

This https://public.vulnerablecode.io/vulnerabilities/VCID-yqzv-rncc-aaak?search=CVE-2022-40151
has this `GMS-2022-9109` as an alias but without a link to its upstream which is https://gitlab.com/gitlab-org/security-products/gemnasium-db/-/blob/master/maven/com.thoughtworks.xstream/xstream/GMS-2022-9109.yml
We should provide a link to the alias. If we do not store it, we should store a canonical link to an alias and not rely only on computing these on the fly. For GMS (formerly Gemnasium, acquired by Gitlab) there is no easy URL that we can construct as the GMS-2022-9109.yml is stored under a specific directory tree named after the affected package.

コントリビューションガイド

このリポジトリのコントリビューションガイドは索引されていません

評価

この issue はまだ評価されていません。

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。