Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

x/vuln: Ignore found vulnerabilities #64599

Closed
gakesson opened this issue Dec 7, 2023 · 1 comment
Closed

x/vuln: Ignore found vulnerabilities #64599

gakesson opened this issue Dec 7, 2023 · 1 comment
Labels
vulncheck or vulndb Issues for the x/vuln or x/vulndb repo

Comments

@gakesson
Copy link

gakesson commented Dec 7, 2023

Hello folks,

I have a proposal:

In order to make govulncheck more flexible in CICD automations, what do you think of introducing an -ignore flag which can be used to temporarily ignore certain supplied vulnerabilities? Say the database is updated with a new entry and CICD starts to fail, but we want to temporarily ignore that particular new entry without having to disable the entire govulncheck scan.

For example govulncheck -ignore=GO-2023-2186,GO-2023-2185 ./... or a file.

Thoughts?
Thank you for a great tool!

@gopherbot gopherbot added the vulncheck or vulndb Issues for the x/vuln or x/vulndb repo label Dec 7, 2023
@gopherbot gopherbot modified the milestones: Unreleased, vuln/unplanned Dec 7, 2023
@seankhliao
Copy link
Member

Duplicate of #59507

@seankhliao seankhliao marked this as a duplicate of #59507 Dec 7, 2023
@seankhliao seankhliao closed this as not planned Won't fix, can't repro, duplicate, stale Dec 7, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
vulncheck or vulndb Issues for the x/vuln or x/vulndb repo
Projects
None yet
Development

No branches or pull requests

3 participants