Vulnerability Args
Vulnerability provides metadata about a security vulnerability in a Note.
Constructors
Properties
The full description of the CVSS for version 3.
CVSS version used to populate cvss_score and severity.
All information about the package to specifically identify this vulnerability. One entry per (version range and cpe_uri) the package vulnerability has manifested in.
Note provider assigned impact of the vulnerability.
The time this information was last changed at the source. This is an upstream timestamp from the underlying information source - e.g. Ubuntu security tracker.
Windows details get their own format because the information format and model don't match a normal detail. Specifically Windows updates are done as patches, thus Windows vulnerabilities really are a missing package, rather than a package being at an incorrect version.