Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Notify when a vulnerability changes #2361

Open
2 tasks done
Mvld3r opened this issue Jan 9, 2023 · 0 comments
Open
2 tasks done

Notify when a vulnerability changes #2361

Mvld3r opened this issue Jan 9, 2023 · 0 comments
Labels
enhancement New feature or request

Comments

@Mvld3r
Copy link
Contributor

Mvld3r commented Jan 9, 2023

Current Behavior

If a vulnerability changes after it has been created (such as having its severity changed from Unassigned to Critical), it currently doesn't trigger a notification

Proposed Behavior

Create a new notification group called VULNERABILITY_CHANGED.

Such a notification should be sent when a vulnerability is changed after it has been created, at least for changes that can trigger a change in the risk score (severity, CPE, ...), and list not only that something has changed, but also what changed.

If it is decided to also send notifications for changes in the vulnerability that don't impact the risk score (eg its description), users should be able to opt out of this subset of notifications (eg, having 2 groups : VULNERABILITY_CHANGED and VULNERABILITY_RISK_CHANGED).

Checklist

@Mvld3r Mvld3r added the enhancement New feature or request label Jan 9, 2023
@Mvld3r Mvld3r changed the title Create a new notification group for vulnerability changes Notify when a vulnerability changes Jan 9, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

1 participant