lunasec
lunasec copied to clipboard
receive update PRs automatically to fix vulnerabilities in direct dependencies
By default, we will create a policy for PR generation that only creates PRs to fix vulnerabilities with a significant impact. Aka, Log4Shell.
This is tied to the CWE, CVSS, and EPSS work we're been doing.
Depends on #1036