-
Notifications
You must be signed in to change notification settings - Fork 228
Open
Labels
buildologyIssues related to process, tooling or CI/CD pipelinesIssues related to process, tooling or CI/CD pipelinessecurity
Description
Feature
We should automate backporting of CVE PRs.
As a part of this:
- We need to standardize a PR format for CVE fixes:
- PR title should be standard
- PR should have a CVE tag
- PRs should only contain CVE fixes
- We should create a Github action that will backport CVE fixes to the pervious version
- We should have an enforcement/automation that that action is ran on CVE PRs
Additional Info
How many versions should be backported too?
aruniverse, MichaelSwigerAtBentley and andremig-bentley
Metadata
Metadata
Assignees
Labels
buildologyIssues related to process, tooling or CI/CD pipelinesIssues related to process, tooling or CI/CD pipelinessecurity