Remove vulnerability actions when it has been dismissed

Background

Today, users can still create issues/merge requests on vulnerabilities that have been dismissed (whitelisted). This can lead to a confusing experience since the user has intentionally whitelisted the vulnerability and doesn't believe it's a problem for one reason or another.

Proposal

Remove the create issue and create merge request(if applicable) buttons from the more info modal when a vulnerability has been dismissed. If a user chooses to undo the dismissal the create issue + create merge request buttons will become available again.

User information

For: Persona: Software developer Persona: Security Analyst

Story: As someone who manages vulnerabilities, I want to know their status and if action is needed to remediate them, so that I can focus on the most severe / highest priority vulnerabilities in my project(s).

If an issue can be opened from a dismissed/whitelisted vulnerability then 1) this causes confusion as to why the vulnerability was dismissed in the first place and 2) causes workflow issues since whitelisted vulns should act like closed issues.

Assignee Loading
Time tracking Loading