From 487dd4189e055766fa98220bcf4b043c1dfd70f2 Mon Sep 17 00:00:00 2001 From: sterni Date: Thu, 3 Feb 2022 14:53:01 +0100 Subject: fix(format-audit-results.jq): use advisories over vulnerabilities Many of the vulnerabilities (in the respective crates) reported are not actually exploitable vulnerabilties of the packages we report them for. Consequently it is more accurate to state that they are advisories. Change-Id: I02932125b77fc9c71e583ae49e822fd3438dce05 Reviewed-on: https://cl.tvl.fyi/c/depot/+/5202 Reviewed-by: sterni Autosubmit: sterni Tested-by: BuildkiteCI --- tools/rust-crates-advisory/format-audit-result.jq | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'tools/rust-crates-advisory/format-audit-result.jq') diff --git a/tools/rust-crates-advisory/format-audit-result.jq b/tools/rust-crates-advisory/format-audit-result.jq index 7c9e3cbac7..d42ff6e55c 100644 --- a/tools/rust-crates-advisory/format-audit-result.jq +++ b/tools/rust-crates-advisory/format-audit-result.jq @@ -67,7 +67,7 @@ else ([ "-", if $checklist then " [ ] " else " " end , "`", $attr, "`: " , (.vulnerabilities.count | tostring) - , " vulnerabilities in Cargo.lock" + , " advisories for Cargo.lock" , if $maintainers != "" then " (cc " + $maintainers + ")" else "" end , "\n" ] + (.vulnerabilities.list | map(format_vulnerability)) -- cgit 1.4.1