You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Use case 2: "How do I prioritize the vulnerabilities that apply to me?"
I have CVSS, EPSS etc scores to stack rank the vulnerabilities identifiable from use case 1, so that I can determine the next steps for responding to them
Use case 3: "How can I perform aggregate, historical analytics on the vulnerabilities that apply/did apply to me?"
I can broadly bucket vulnerabilities to answer questions like "How many memory safety vulnerabilities impacted me last year?"
Some other general input validation issues worth noting here:
@andrewpollock Maybe I am missing something, but this looks like a collection other issues and is not a unique request on its own. I would move to close this and we can group relevant issues with labels and milestones (hopefully in the next few weeks). Let me know if you have different thoughts.
I thought I'd capture an umbrella issue for discussing a package of improvements for 5.2.0
A possible use-case based approach:
Use case 1: "Does this vulnerability apply to me?" "How do I make it not apply to me?"
Use case 2: "How do I prioritize the vulnerabilities that apply to me?"
Use case 3: "How can I perform aggregate, historical analytics on the vulnerabilities that apply/did apply to me?"
Some other general input validation issues worth noting here:
Related validation work happening elsewhere:
The text was updated successfully, but these errors were encountered: