As of today users can trigger a notification for new vulnerabilities detected by Clair. For vulnerabilities we allow to filter by the CVE / advisory severity. Based on the survey and customers discussions we had around vulnerability management it might make sense to provide an additional filter to allow users to excludes CVEs without remediation. This would allow users to still see those CVEs but not getting alerted for something they can't act on.
- relates to
-
PROJQUAY-255 Add state to vulnerabilities to indicate whether they are remediable
-
- Closed
-