advanced-security / dependabot-epss-action

Action to detect if any open :dependabot: Dependabot alert CVEs exceed an EPSS threshold and fail the workflow.
MIT License
2 stars 1 forks source link

EPSS = Exploit Prediction Scoring System. Not Ecosystem Package Security Score #12

Closed Crashedmind closed 3 weeks ago

Crashedmind commented 1 month ago

EPSS = Exploit Prediction Scoring System (EPSS) per https://www.first.org/epss/

It is not EPSS (Ecosystem Package Security Score) per

felickz commented 3 weeks ago

🥇 Reads the comments