Skip to content

Make 'Advisory' field opt-in #179

@raboof

Description

@raboof

The 'advisory' field is used when a PMC has its own naming scheme for their advisories, next to CVE.

This field is often misused:

  • Isis, Artemis, Feliz, Ofbiz and Zeppelin incorrectly used it by putting Jira ID's in it
  • bookkeeper, camel, karaf and ofbiz incorrectly used it by putting URLs in it
  • Struts 2 does seems to use it legitimately.

We should probably hide the field to reduce confusion, and only show it for Struts (and any other PMC that asks).

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions