Skip to content

x/pkgsite: display different vulnerability information for versions tab #59854

Open
@timothy-king

Description

@timothy-king

The versions tab current show vulnerable versions of a package from vulndb as a the go vuln number in a highlighted red circle. There is one highlighted red circle per vulnerability. I am not sure it is clear to users that these are vulnerabilities.

One possible alternative text would be to have the same red circle, but just say how many vulnerabilities there are in a version: 2 known vulnerabilities. Clicking through to a version would give details on which vulnerabilities that version is vulnerable to.

Example: https://pkg.go.dev/gopkg.in/yaml.v2?tab=versions

9gYX8gGTrG2MKDr

Metadata

Metadata

Assignees

No one assigned

    Labels

    FeatureRequestIssues asking for a new feature that does not need a proposal.NeedsDecisionFeedback is required from experts, contributors, and/or the community before a change can be made.pkgsitevulncheck or vulndbIssues for the x/vuln or x/vulndb repo

    Type

    No type

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions