All terms

Glossary

Patch management

Also: Vulnerability management

The organized handling of security updates: detect, assess, apply, evidence.

The effort is not in applying but in assessing. Not every reported vulnerability affects your usage, and not every critical advisory is urgent.

Automated dependency scanning in the delivery pipeline helps, because it surfaces new advisories where work happens anyway.

Read more20-year-old publishing platform