Vulnerability Occurrence Response
An occurrence of a severity vulnerability on a resource.
Constructors
Properties
The cvss v2 score for the vulnerability.
The cvss v3 score for the vulnerability.
CVSS version used to populate cvss_score and severity.
The distro assigned severity for this vulnerability when it is available, otherwise this is the note provider assigned severity. When there are multiple PackageIssues for this vulnerability, they can have different effective severities because some might be provided by the distro while others are provided by the language ecosystem for a language pack. For this reason, it is advised to use the effective severity on the PackageIssue level. In the case where multiple PackageIssues have differing effective severities, this field should be the highest severity for any of the PackageIssues.
Whether at least one of the affected packages has a fix available.
A detailed description of this vulnerability.
The set of affected locations and their fixes (if available) within the associated resource.
URLs related to this vulnerability.
A one sentence description of this vulnerability.