remove govulndb (#4783)

This commit is contained in:
DmitriyLewen
2023-07-19 13:24:35 +06:00
committed by GitHub
parent c05caae43f
commit ce77bb46c3
7 changed files with 34 additions and 80 deletions

View File

@@ -98,8 +98,7 @@ func (c Client) getVendorSeverity(vulnID string, vuln *dbTypes.Vulnerability, so
}
// use severity from GitHub for all GHSA-xxx vulnerabilities
// govuln doesn't have severity. Use severity from GitHub(for CVE-xxx vulns)
if strings.HasPrefix(vulnID, "GHSA-") || source == vulnerability.GoVulnDB {
if strings.HasPrefix(vulnID, "GHSA-") {
if vs, ok := vuln.VendorSeverity[vulnerability.GHSA]; ok {
return vs.String(), vulnerability.GHSA
}