Seriously!
We also suffer from this. Although in some cases it's due to a Dev dependency. It's crazy how much noise it adds specifically from ReDoS...
Totally hear you on the noise…but we should want to auto-merge vs ignore, no? Given the right tooling of course.
ReDoS cves in your dev dependencies like playwright that could literally never be exploited, so annoying.