Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Vulnerability Audit: Display Risk Score Column For Grouped Vulnerabilities #914

Open
2 tasks done
msymons opened this issue Jun 20, 2024 · 0 comments
Open
2 tasks done
Labels
enhancement New feature or request good first issue Good for newcomers p3 Nice-to-have features size/S Small effort

Comments

@msymons
Copy link
Member

msymons commented Jun 20, 2024

Current Behavior

The Vulnerability Audit Screen has a column that displays the count of affected projects for each vulnerability. It really is useful to see (say) that vulnerability A affects 150 projects and vulnerabilities B and C each affect 20.

However, this does not take weighted risk score into account, ie, where A and C are both low severity (score = 1) and B is critical (score = 10).

In this example, risks scores would be 150 for A, 200 for B, 20 for C.

Having this information missing from the "Grouped Vulnerabilities" Audit screen thus makes it harder to audit based on risk.

Proposed Behavior

Add Risk Score Column to the "Grouped Vulnerabilities" Audit Screen. The column needs to be sortable.

Checklist

@msymons msymons added the enhancement New feature or request label Jun 20, 2024
@nscuro nscuro added p3 Nice-to-have features good first issue Good for newcomers size/S Small effort labels Jun 24, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request good first issue Good for newcomers p3 Nice-to-have features size/S Small effort
Projects
None yet
Development

No branches or pull requests

2 participants