Skip to content

Add CVEs in transitive dependencies section#8196

Draft
boblangley wants to merge 1 commit intomasterfrom
boblangley-patch-1
Draft

Add CVEs in transitive dependencies section#8196
boblangley wants to merge 1 commit intomasterfrom
boblangley-patch-1

Conversation

@boblangley
Copy link
Copy Markdown
Member

Added section on CVEs in transitive dependencies with scanning and issue tracking details.

Added section on CVEs in transitive dependencies with scanning and issue tracking details.
@boblangley boblangley self-assigned this Apr 21, 2026
@bording
Copy link
Copy Markdown
Member

bording commented May 5, 2026

🎩 Squad comment

@boblangley @tamararivera @abparticular @mchamberlin77

As the TF currently addressing a CVE, the squad thinks you might be well suited to publicly document what we do regarding CVEs in our dependencies.

Please acknowledge the squad comment has been read by adding the 👀 to the comment

📝 version 2025-06-10

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants