-
-
Notifications
You must be signed in to change notification settings - Fork 229
Open
Description
March 2, 2026 Expectation Regarding cvss (v2, v3, v4) fields
Choices
- Accept having only 1 automatic CVSS value from GHSA.
A. AS-IS: Accept the current algorithm.
B. Fix it: One value from GHSA - set cvss_v3 or cvss_v4 value.- More details in comments below.
- Add one or more cvss values from non-GHSA source.
A. Choices:- Create separate tool to cvss values. Run after github_advisory_sync.rb.
- Add external call for data inside github_advisory_sync.rb script.
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels