ppkarwasz opened a new pull request, #11:
URL: https://github.com/apache/logging-site/pull/11

   This commit adds a new blog post titled **“How I Learned to Stop Worrying 
and Love the VEX.”**
   
   The post explains:
   
   * The role of **VEX files** (Vulnerability Exploitability eXchange) in 
managing dependency security.
   * Why the Log4j project initially chose not to publish a VEX, and what 
changed.
   * Lessons learned from helping other projects like Kafka.
   * The launch of the **Alpha-Omega–funded VEX Initiative**, aiming to 
automate and improve VEX generation across Apache projects, starting with Solr.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to