azuredevops icon indicating copy to clipboard operation
azuredevops copied to clipboard

separate warning threshold or CVSS score output

Open cyberblast opened this issue 7 months ago • 0 comments

Hi, I would like to suggest adding a separate warning threshold. I know there's warnOnCVSSViolation parameter, but unfortunately it's implemented as boolean only.

The idea is to be able to have different task result based on CVSS score.

e.g. 0-4 => ok 4-6 => warning 6-10 => fail

Alternatively, would it be possible to declare CVSS score as output variable? This way we could easily evaluate the score and break the pipe in a sebsequent task ourself...

cyberblast avatar Nov 17 '23 11:11 cyberblast