-
Notifications
You must be signed in to change notification settings - Fork 527
Open
Description
Several vulnerabilities are labeled as using CVSS v4, but their scores are actually calculated with CVSS v3.
Examples:
GHSA-fpcr-4rr5-hpcp
advisory-database/advisories/github-reviewed/2022/05/GHSA-fpcr-4rr5-hpcp/GHSA-fpcr-4rr5-hpcp.json
Lines 13 to 14 in f682ffc
| "type": "CVSS_V4", | |
| "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" |
GHSA-34cx-hvm4-vx7j
advisory-database/advisories/github-reviewed/2022/05/GHSA-34cx-hvm4-vx7j/GHSA-34cx-hvm4-vx7j.json
Lines 13 to 14 in f682ffc
| "type": "CVSS_V4", | |
| "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" |
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels