Skip to content

separate warning threshold or CVSS score output #139

@cyberblast

Description

@cyberblast

Hi,
I would like to suggest adding a separate warning threshold.
I know there's warnOnCVSSViolation parameter, but unfortunately it's implemented as boolean only.

The idea is to be able to have different task result based on CVSS score.

e.g.
0-4 => ok
4-6 => warning
6-10 => fail

Alternatively, would it be possible to declare CVSS score as output variable? This way we could easily evaluate the score and break the pipe in a sebsequent task ourself...

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions