epugh commented on PR #153:
URL: https://github.com/apache/solr-site/pull/153#issuecomment-4639548397

   @ppkarwasz  @janhoy I hope my work is useful on this PR...  I took the 
original PR, and bent it in the direction of how can we use these vex files...  
 I wanted our front matter to be compatible with the cyclonedx format, and not 
to be going beyond what CycloneDX VEX supports.   So I removed 
`vulnerable_component`, `impacted_component`, and `severity`.   
   
   I think those other annotations could be really useful, but I feel like we 
are trying to do too much in one PR.   Now, this PR would get us to a long term 
fomrat of using markdown, a nice detail page, and then if we want to start 
adding additional metadata we could.
   
   If you all agree, then we can move this out of DRAFT!
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to