Free Microsoft GH-500 Exam Dumps Questions & Answers
| Exam Code/Number: | GH-500Join the discussion |
| Exam Name: | GitHub Advanced Security |
| Certification: | Microsoft |
| Free Question Number: | 139 |
| Publish Date: | Aug 13, 2026 |
| # of views: | 1774 |
|
|
|
Hotspot Question
You have a GitHub Enterprise Cloud Organization that uses GitHub Code Security.
You need to create a security campaign to remediate cross-site scripting (XSS) vulnerabilities identified by code scanning. The campaign must meet the following requirements:
- Include only alerts that support automatic remediation.
- Include only alerts associated with cross-site scripting (CWE-79).
- Enable eligible security administrators to manage and track the
campaign.
How should you configure the campaign? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
You have a GitHub Enterprise Cloud Organization.
You enable secret scanning alerts and secret scanning push protection across all repositories.
You review the alerts by using the Overview dashboard of security overview in the GitHub interface.
You need to identify only the secret scanning alerts that were generated when push protection was bypassed.
Which filter should you use?
Assuming that notification settings and Dependabot alert recipients have not been customized, which user account setting should you use to get an alert when a vulnerability is detected in one of your repositories?
