You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Currently vulnerabilities.ratings.score is a non required field in the spec. The library however serializes absent scores as 0 in VEX documents. This is probably because score is a float field
The text was updated successfully, but these errors were encountered:
sambhav
changed the title
[bug] BOMEncoder for vulnerabilities add a default score of 0 if not specified
[bug] BOMEncoder for vulnerabilities adds a default score of 0 if not specified
Mar 17, 2022
Currently vulnerabilities.ratings.score is a non required field in the spec. The library however serializes absent scores as 0 in VEX documents. This is probably because score is a float field
cyclonedx-go/cyclonedx.go
Line 637 in 6c388c4
For example see BOMs at anchore/grype#678
The text was updated successfully, but these errors were encountered: