Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

GitHub Dependabot connector should link back to GitHub #392

Open
abirismyname opened this issue Apr 18, 2022 · 0 comments
Open

GitHub Dependabot connector should link back to GitHub #392

abirismyname opened this issue Apr 18, 2022 · 0 comments

Comments

@abirismyname
Copy link
Contributor

When clicking on a CVE under the VM Explorer tied to a Dependabot alert I would expect to see a link to the out-dated dependency within GitHub. It doesn't show any details about where the alert came from.

For example, a dependabot Scanner ID of
"GitHubDependabot RVA_kwDOHBn6OM5wVKTm"
or Unique Identifier of "GitHubDependabot CVE-2021-26217" should point to
<REPO_URL>/security/dependabot/4

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant