1
0
mirror of synced 2026-01-05 21:04:17 -05:00

[Feb 9] Security advisories: new fields (CWE, CVSS, ...)

This commit is contained in:
Shati Patel
2021-02-09 19:11:05 +00:00
committed by GitHub
parent 443d4e54f2
commit fa6c0f306f
12 changed files with 17 additions and 10 deletions

View File

@@ -0,0 +1,2 @@
1. Add common weakness enumerators (CWEs) for the kinds of security weaknesses that this security advisory addresses. For a full list of CWEs, see the "[Common Weakness Enumeration](https://cwe.mitre.org/index.html)" from MITRE.
1. If you have an existing CVE identifier, select "I have an existing CVE identifier" and type the CVE identifier in the text box. Otherwise, you can request a CVE from {% data variables.product.prodname_dotcom %} later.

View File

@@ -1,2 +1,2 @@
1. Type the details about the security vulnerability that the security advisory addresses.
![Security advisory metadata](/assets/images/help/security/security-advisory-metadata.png)
1. Edit the product and versions affected by the security vulnerability that this security advisory addresses.
![Security advisory metadata](/assets/images/help/security/security-advisory-affected-product.png)

View File

@@ -0,0 +1,2 @@
1. Select the severity of the security vulnerability. To assign a CVSS score, select "Assess severity using CVSS" and click the appropriate values in the calculator. {% data variables.product.product_name %} calculates the score according to the "[Common Vulnerability Scoring System Calculator](https://www.first.org/cvss/calculator)."
![Drop-down menu to select the severity](/assets/images/help/security/security-advisory-severity.png)