minus-squarevegetaaaaaaa@lemmy.worldtoSelfhosted@lemmy.world•How do you keep track of vulnerabilities?linkfedilinkEnglisharrow-up2·edit-214 hours agoupgrades: distribution packages: unattended-upgrades third party software: subscribe to the releases RSS feed (in tt-rss or rss2email), read release notes, bump version number in my ansible playbook, run playbook, done. vulnerabilities: debsecan for distribution packages trivy fort third-party applications/libraries/OCI images wazuh for larger (work) setups linkfedilink
upgrades:
vulnerabilities: