Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Cvss4 support in Dependency Track #4707

Open
2 tasks done
itmanju opened this issue Mar 3, 2025 · 1 comment
Open
2 tasks done

Cvss4 support in Dependency Track #4707

itmanju opened this issue Mar 3, 2025 · 1 comment
Labels
enhancement New feature or request gnomes Issues for milestone planning and effort estimation by the DT team p2 Non-critical bugs, and features that help organizations to identify and reduce risk size/M Medium effort

Comments

@itmanju
Copy link

itmanju commented Mar 3, 2025

Current Behavior

currently we are not able to see Cvss4 scoring in Dependency Track

Image

Proposed Behavior

As NVD supports CVSS4 scoring system for vulnerabilities it should also be shown in Dependency Track

Checklist

@itmanju itmanju added the enhancement New feature or request label Mar 3, 2025
@nscuro nscuro added p2 Non-critical bugs, and features that help organizations to identify and reduce risk size/M Medium effort gnomes Issues for milestone planning and effort estimation by the DT team labels Mar 4, 2025
@nscuro
Copy link
Member

nscuro commented Mar 4, 2025

We've been waiting on stevespringett/cvss-calculator#78 as a precondition, but I think we might just switch to https://github.com/org-metaeffekt/metaeffekt-core instead.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request gnomes Issues for milestone planning and effort estimation by the DT team p2 Non-critical bugs, and features that help organizations to identify and reduce risk size/M Medium effort
Projects
None yet
Development

No branches or pull requests

2 participants