diff --git a/content/code-security/security-advisories/repository-security-advisories/about-repository-security-advisories.md b/content/code-security/security-advisories/repository-security-advisories/about-repository-security-advisories.md index a776283cdd..3c285dbf45 100644 --- a/content/code-security/security-advisories/repository-security-advisories/about-repository-security-advisories.md +++ b/content/code-security/security-advisories/repository-security-advisories/about-repository-security-advisories.md @@ -36,6 +36,10 @@ With repository security advisories, you can: {% data reusables.repositories.security-advisories-republishing %} +{% ifversion repository-security-advisories-API %} +You can also use the REST API to create, list, and update repository security advisories. For more information, see "[AUTOTITLE](/rest/security-advisories/repository-advisories)" in the REST API documentation. +{% endif %} + You can give credit to individuals who contributed to a security advisory. For more information, see "[AUTOTITLE](/code-security/security-advisories/repository-security-advisories/editing-a-repository-security-advisory#about-credits-for-security-advisories)." {% data reusables.repositories.security-guidelines %} @@ -48,7 +52,7 @@ If a security advisory is specifically for npm, we also publish the advisory to ## CVE identification numbers -{% data variables.product.prodname_security_advisories %} builds upon the foundation of the Common Vulnerabilities and Exposures (CVE) list. The security advisory form on {% data variables.product.prodname_dotcom %} is a standardized form that matches the CVE description format. +{% data variables.product.prodname_security_advisories %} builds upon the foundation of the Common Vulnerabilities and Exposures (CVE) list. The security advisory form on {% data variables.product.prodname_dotcom %} is a standardized form that matches the CVE description format. {% data variables.product.prodname_dotcom %} is a CVE Numbering Authority (CNA) and is authorized to assign CVE identification numbers. For more information, see "[About CVE](https://www.cve.org/About/Overview)" and "[CVE Numbering Authorities](https://www.cve.org/ProgramOrganization/CNAs)" on the CVE website. diff --git a/content/code-security/security-advisories/repository-security-advisories/creating-a-repository-security-advisory.md b/content/code-security/security-advisories/repository-security-advisories/creating-a-repository-security-advisory.md index eed0fddf06..605434ee2a 100644 --- a/content/code-security/security-advisories/repository-security-advisories/creating-a-repository-security-advisory.md +++ b/content/code-security/security-advisories/repository-security-advisories/creating-a-repository-security-advisory.md @@ -22,6 +22,10 @@ shortTitle: Create repository advisories ## Creating a security advisory +{% ifversion repository-security-advisories-API %} +You can also use the REST API to create repository security advisories. For more information, see "[AUTOTITLE](/rest/security-advisories/repository-advisories)" in the REST API documentation. +{% endif %} + {% data reusables.repositories.navigate-to-repo %} {% data reusables.repositories.sidebar-security %} {% data reusables.repositories.sidebar-advisories %} diff --git a/content/code-security/security-advisories/repository-security-advisories/editing-a-repository-security-advisory.md b/content/code-security/security-advisories/repository-security-advisories/editing-a-repository-security-advisory.md index c438f709ee..509145e72c 100644 --- a/content/code-security/security-advisories/repository-security-advisories/editing-a-repository-security-advisory.md +++ b/content/code-security/security-advisories/repository-security-advisories/editing-a-repository-security-advisory.md @@ -20,6 +20,10 @@ shortTitle: Edit repository advisories ## Editing a security advisory +{% ifversion repository-security-advisories-API %} +You can also use the REST API to edit repository security advisories. For more information, see "[AUTOTITLE](/rest/security-advisories/repository-advisories)" in the REST API documentation. +{% endif %} + {% data reusables.repositories.navigate-to-repo %} {% data reusables.repositories.sidebar-security %} {% data reusables.repositories.sidebar-advisories %} diff --git a/data/features/repository-security-advisories-API.yml b/data/features/repository-security-advisories-API.yml new file mode 100644 index 0000000000..1ab96b8edb --- /dev/null +++ b/data/features/repository-security-advisories-API.yml @@ -0,0 +1,4 @@ +# Reference: Issue #9109 - REST API and webhooks for repo-level advisories +versions: + fpt: '*' + ghec: '*'