I'd like a way to link between the security issue which was found and the code which is "flawed". That will make it much easier to track down and fix.
Also wondering if it is possible to annotate "vulnerable" code to be ignored if it is not going to be fixed and the audit is creating noise in those cases.
Hi all,
I'd like a way to link between the security issue which was found and the code which is "flawed". That will make it much easier to track down and fix.
Also wondering if it is possible to annotate "vulnerable" code to be ignored if it is not going to be fixed and the audit is creating noise in those cases.
Thanks!