Dependabot アラートを使ってプロジェクトの依存関係の脆弱性を特定する
Browsing security advisories in the GitHub Advisory Database
You can browse the GitHub Advisory Database to find advisories for security risks in open source projects that are hosted on GitHub.
Editing security advisories in the GitHub Advisory Database
You can submit improvements to any advisory published in the GitHub Advisory Database.
About Dependabot alerts
GitHub Enterprise Server sends Dependabot alerts when we detect that your repository uses a vulnerable dependency.
Dependabot アラートの構成
Viewing and updating Dependabot alerts
If GitHub Enterprise Server discovers insecure dependencies in your project, you can view details on the Dependabot alerts tab of your repository. Then, you can update your project to resolve or dismiss the alert.
Configuring notifications for Dependabot alerts
Optimize how you receive notifications about Dependabot alerts.