Skip to content

Display references from CVEs inline and allow marking irrelevant #775

@fricklerhandwerk

Description

@fricklerhandwerk

As a security team member I want to see linked information from a CVE while triaging a matching suggestion, and be able to mark it irrelevant if needed.

References typically link to upstream issues or patches, and showing them inline saves a couple of clicks checking nist.gov. Oftentimes those links aren't helpful though, and masking them from published issues helps keep noise down.

Acceptance criteria

Given a matching suggestion with references,
When I view the suggestion,
Then the references are displayed.

Given a matching suggestion with references,
When I mark a reference as ignored,
It will not be displayed in the published issue, and the change will show up in the activity log.

Metadata

Metadata

Labels

skinAnything related to the visual presentation

Projects

No projects

Relationships

None yet

Development

No branches or pull requests

Issue actions