Pattern
Dependency Security Scan Drift
dependency-scan-drift
Vulnerability findings get out of sync with what you actually ship because scanners evaluate resolved/transitive dependency graphs, legacy vulnerability DB matches persist, and exclusion/config interfaces differ. False positives and missed supply-chain backdoors increase review workload and risk.