About alerts for vulnerable dependencies→
GitHub Enterprise Server sends Dependabot alerts when we detect vulnerabilities affecting your repository.
Configuring notifications for vulnerable dependencies→
Optimize how you receive notifications about Dependabot alerts.