Alert Management

The issues exist for managing vulnerability alerts associated with inventory items in a project.

SCA-53632: Alerts not being deleted for inventory updated to new component version having no alerts

When you update an inventory item currently associated with open alerts to another component version that has no alerts, the alerts are not removed for the updated item.

Workaround: None exists.

SCA-53629: Closing alert for an inventory item not being applied to duplicate inventory in the project

When you close an alert for a given inventory item in a project, this status change should be applied to duplicate inventory within the project (that is, inventory having the same component version but a different license or relationship such as “dependency of”). Currently, the alert for duplicate inventory are not being closed.

Workaround: To close the alert for all duplicate inventory, perform a project-level suppression of the vulnerability associated with that alert.