Skip to content

Adding a vulnerability scanner as part of the dependency updates #59911

@mcollina

Description

@mcollina

I think we should add a vulnerability scanner in the dependency updates flow.

PRs such as #57769, should be scanned for vulnerabilities before going through - I would also not installing things if they would pull vulnerable dependencies (not sure how easy that would be).

@aduh95 @BridgeAR @ruyadorno

Metadata

Metadata

Assignees

No one assigned

    Labels

    securityIssues and PRs related to security.staletoolsIssues and PRs related to the tools directory.

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions