You can use Dependabot security updates or manual pull requests to easily update vulnerable dependencies.| GitHub Docs
You can use the dependency graph to identify all your project's dependencies. The dependency graph supports a range of popular package ecosystems.| GitHub Docs