Skip to content

Support for respecting Analysis state #15

@s0ar

Description

@s0ar

Feature request: When the VEX or VDR contains an analysis state it would be great to respect that in the visualization.

The spec: https://cyclonedx.org/docs/1.6/json/#vulnerabilities_items_analysis contains the state property to declare the occurrence of a vulnerability.

Thus in the summary, components and vulnerabilities table this should be respected maybe toggled to include them based on their state. Don't show "not_affected", "false_positive", "resolved".

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions