Skip to content

Commit 2023ffc

Browse files
authored
Update CVE policy by removing SBOM reference
Removed mention of software bill of materials (SBOM) in CVE policy. Signed-off-by: rae sharp ♯ <8883519+tr0njavolta@users.noreply.github.com>
1 parent 5aed688 commit 2023ffc

1 file changed

Lines changed: 1 addition & 2 deletions

File tree

docs/reference/cve-policy.md

Lines changed: 1 addition & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -100,8 +100,7 @@ CVEs.
100100

101101
Upbound bundles Kubernetes, UXP, and other infrastructure components within
102102
Spaces. CVEs in bundled dependencies are evaluated and patched under the same
103-
SLAs as first-party CVEs. Upbound publishes a software bill of materials (SBOM)
104-
for each release to support customer vulnerability tracking.
103+
SLAs as first-party CVEs.
105104

106105
**Spaces Support Lifecycle**
107106

0 commit comments

Comments
 (0)