Skip to content

Update Advisory Logic to Allow Creation with Only CVE ID and Severity #2105

@ziadhany

Description

@ziadhany

We can’t create an advisory without a summary, affected packages, or references.
But what if we only have a CVE ID and a severity list, such as SUSE scores?
https://ftp.suse.com/pub/projects/security/yaml/suse-cvss-scores.yaml

I think we should update our advisory logic to allow creating advisories in this case.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions