Renovate can do both of these things already:
https://docs.renovatebot.com/configuration-options/#vulnerab...
https://docs.renovatebot.com/configuration-options/#minimumr...