Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add missing package information for Sarif report #2267

Open
GeorgeLS opened this issue Nov 19, 2024 · 0 comments
Open

Add missing package information for Sarif report #2267

GeorgeLS opened this issue Nov 19, 2024 · 0 comments
Labels
enhancement New feature or request

Comments

@GeorgeLS
Copy link

What would you like to be added:
I would like to have package information in the Sarif report.

Why is this needed:
If this information is present, then someone can correlate known vulnerabilities with packages they are using.

Additional context:
I've already opened a PR (#2254) to try and implement that feature.

@GeorgeLS GeorgeLS added the enhancement New feature or request label Nov 19, 2024
@spiffcs spiffcs moved this to In Review in OSS Nov 20, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
Status: In Review
Development

No branches or pull requests

1 participant