enhance(cve-feed): osv_generator, strip OSV from content_text, support ```json osv fence#183
enhance(cve-feed): osv_generator, strip OSV from content_text, support ```json osv fence#183PushkarJ wants to merge 3 commits intokubernetes:mainfrom
Conversation
Signed-off-by: pnkcaht <samzoovsk19@gmail.com>
Signed-off-by: pnkcaht <samzoovsk19@gmail.com>
|
Skipping CI for Draft Pull Request. |
|
[APPROVALNOTIFIER] This PR is NOT APPROVED This pull-request has been approved by: PushkarJ The full list of commands accepted by this bot can be found here. DetailsNeeds approval from an approver in each of these files:Approvers can indicate their approval by writing |
|
/sig security docs |
|
@PushkarJ: The label(s) DetailsIn response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. |
81bfbc7 to
d8693d7
Compare
d8693d7 to
cdb3315
Compare
…t ```json osv fence - Add _kubernetes_io.osv_generator from issue 'generated by' comment or cve-feed-osv repo - Set content_text to body minus OSV block and <details>OSV format</details>+comment - Prefer OSV from GitHub issue when present; support '```json osv' fence in addition to '```json' - Refactor shared _find_osv_json_block; remove redundant additional-CVE OSV fetch
cdb3315 to
2fce6c0
Compare
|
This is mostly done. Just waiting for original PR to be merged before I open it up as "ready for review" assuming nothing else needs adjusting |
Hey I don't get it why we don't just fix the initial PR with the author or merge something correct directly ourselves? Accepting incorrect patch in the tree to fix them ourselves after the fact looks strange to me. |
I'm with @mtardy on this. It's better for the corrections to be applied to the original PR before we introduce code we don't like. |
|
Ack. No strong opinions from my end. Whichever option is best for the code base is fine with me :) |
Follow up to this PR: #181
Sample output file
output.txt