Mike Saelim

Results 2 comments of Mike Saelim

I can take this. What should happen if someone specifies ignored CVEs through both the `-i` command line option and the config file? It looks like [bundler-audit's logic](https://github.com/rubysec/bundler-audit/blob/ae4e6eeff71a168d589e1f76a974774f53098220/lib/bundler/audit/scanner.rb#L221-L225) says: if...