Global Feed Post Login
Replying to Avatar Jameson Lopp

That feeling when you get a vulnerability report for a software library used in your project and the suggested remediation is "none" because no one has patched the vulnerability.

Second place is when the suggested remediation is "none" because other software dependencies have conflicts that prevent you from updating to a patched version.

Avatar
nerd2ninja; ©️📺 2y ago

Might as well say "Remediation: Please contribute" or "Patch it yourself"

Reply to this note

Please Login to reply.

Discussion

No replies yet.