Post

GitHub
GitHub@github·
GitHub is now a CVE Numbering Authority (CNA) 🎉 Disclose vulnerabilities, alert developers, and provide updates all from within GitHub. Coming soon!
English
24
883
2.8K
0
Jason
Jason@jhwohlgemuth·
@github So, what is the “distinct, agreed-upon scope” of GitHub as a CNA? Everything hosted on GitHub? (Note: this would make GitHub a CNA about CNAs since the CNA guidance is hosted on GutHub 🧐)
English
1
0
5
0
Hamayoun_Kabir
Hamayoun_Kabir@hamayoun_kabir·
@github Great idea,but somehow i don’t like it.cause if i found vulnerabilities and i don’t want to let them know they notify them one way or another.
English
1
0
0
0
Scalanjava
Scalanjava@scalanjava·
@github @myfear does this mean you will have inbuilt tools/api to notify all repos with vulnerabilities?
English
1
0
1
0
Paylaş