aboutcode-org / aboutcode-org/vulnerablecode

History of Advisories

オープン
#2,329 コメント 2 件 リアクション 0 件 担当者 0 名 GitHub で見る
insights
主要言語
Python
スター
702
フォーク
328
平均マージ
3日 8時間
マージ済み PR(30日)
3

説明

Right now, when an advisory is updated upstream, we create a new record in the db(mark it with `is_latest=True`) on the subsequent importer run but there is no way for a user to see ***`what`*** actually changed over time.

- At first we need a `Way Back Machine` mimic for advisories to see a advisory snapshot exactly how it was at that point in time
- We display the diffs between versions directly in the UI (if a severity score changes, a new reference is added, or a package is removed, users should be able to see exactly when and what happened at a glance)

**Suggested UX:**
- Add a "History" tab to the advisory detail page.
- Show a chronologically ordered list of versions of the advisory
- Allow users to click into a specific historical snapshot to view the advisory exactly as it was at that point in time, just like a way Back Machine
- Need a summary/diff of what changed for a quick overview

Excluding changes summary and epss score(can be tracked after merge of https://github.com/aboutcode-org/vulnerablecode/pull/2328 ; also since it changes everyday) might be good.

コントリビューションガイド

このリポジトリのコントリビューションガイドは索引されていません

評価

この issue はまだ評価されていません。

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。