lunasec-io / lunasec

LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/
https://www.lunasec.io/
Other
1.44k stars 164 forks source link

Parse change logs for packages to help flag high risk upgrades #1129

Open freeqaz opened 1 year ago

freeqaz commented 1 year ago

From Twitter here: https://twitter.com/freeqaz/status/1626040364611301376?s=46&t=3oGEEOGRofKW4OEwqeOKOw