Skip to main content

此版本的 GitHub Enterprise Server 将于以下日期停止服务 2026-03-17. 即使针对重大安全问题,也不会发布补丁。 为了获得更好的性能、更高的安全性和新功能,请升级到最新版本的 GitHub Enterprise。 如需升级帮助,请联系 GitHub Enterprise 支持

Dependabot 警报筛选器

Dependabot alerts 筛选器可以帮助您确定和管理代码库中易受攻击的依赖项警报的优先级。

You can sort and filter Dependabot alerts by typing filters as key:value pairs into the search bar.

OptionDescriptionExample
CVE-IDDisplays alerts associated with this CVE-IDCVE-2020-28482 will show any alerts whose underlying advisory has this CVE ID number.
ecosystemDisplays alerts for the selected ecosystemUse ecosystem:npm to show Dependabot alerts for npm
GHSA-IDDisplays alerts associated with this GHSA-IDGHSA-49wp-qq6x-g2rf will show any alerts whose underlying advisory has this GitHub Advisory Database ID.
hasDisplays alerts meeting the selected filter criteriaUse has:patch to show alerts related to advisories that have a patch
isDisplays alerts based on their stateUse is:open to show open alerts
manifestDisplays alerts for the selected manifestUse manifest:webwolf/pom.xml to show alerts on the pom.xml file of the webwolf application
packageDisplays alerts for the selected packageUse package:django to show alerts for django
resolutionDisplays alerts of the selected resolution statusUse resolution:no-bandwidth to show alerts previously parked due to lack of resources or time to fix them
repoDisplays alerts based on the repository they relate to
Note that this filter is only available for security overview. For more information, see About security overview
Use repo:octocat-repo to show alerts in the repository called octocat-repo
scopeDisplays alerts based on the scope of the dependency they relate toUse scope:development to show alerts for dependencies that are only used during development
severityDisplays alerts based on their level of severityUse severity:high to show alerts with a severity of High
sortDisplays alerts according to the selected sort orderThe default sorting option for alerts is sort:most-important, which ranks alerts by importance
Use sort:newest to show the latest alerts reported by Dependabot
teamDisplay data for all repositories that the specified team has write access or admin access to. For more information on repository roles, see Repository roles for an organization.Use team:octo-team to show alerts for repositories that the octo-team team has write access to.
topicDisplay data for all repositories that are classified with a specific topic. For more information on repository topics, see Classifying your repository with topics.Use topic:nextjs to show alerts for repositories that are classified with the nextjs topic.