A vendor marks a CVE will_not_fix — do you include it in your zero-day sweep or filter it out? Ben Lang's latest on the Anchore Enterprise API covers both, plus the script to automate it. https://anchore.com/blog/chasing-zero-day-vulnerabilities-via-anchore-enterprise-api/
0 likes 0 replies
?