Skip to content

Fix available tags are not accurate when multiple ecosystems are combined together #2491

@hogo6002

Description

@hogo6002

The vulnerability list page on OSV.dev currently displays a Fix available tag for vulnerabilities if at least one affected package has a fix. But when filtering vulnerabilities by a specific ecosystem, the Fix available tag remains the same even if the fix is only available for a package in a different ecosystem. It would be more accurate to display the Fix available tag based on the currently selected ecosystem filter.

Example: https://osv.dev/vulnerability/CVE-2024-43374 (no fix for Debian)
image

Metadata

Metadata

Assignees

No one assigned

    Labels

    backlogImportant but currently unprioritizedfrontendFrontend InfrastructureuiUI bugs/FRs

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions