Skip to content

Comments

Add CVSS 3.1 severity for GHSA-3j27-563v-28wf#6903

Merged
advisory-database[bot] merged 1 commit intogithub:sunnypatell/advisory-improvement-6903from
sunnypatell:add-cvss31-GHSA-3j27-563v-28wf
Feb 17, 2026
Merged

Add CVSS 3.1 severity for GHSA-3j27-563v-28wf#6903
advisory-database[bot] merged 1 commit intogithub:sunnypatell/advisory-improvement-6903from
sunnypatell:add-cvss31-GHSA-3j27-563v-28wf

Conversation

@sunnypatell
Copy link

adds NVD-sourced CVSS 3.1 severity score to this advisory which currently has no CVSS scoring.

  • source: NVD
  • score: 8.4 (HIGH)
  • vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Copilot AI review requested due to automatic review settings February 16, 2026 00:39
@github-actions github-actions bot changed the base branch from main to sunnypatell/advisory-improvement-6903 February 16, 2026 00:40
Copy link

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot encountered an error and was unable to review this pull request. You can try again by re-requesting a review.

@sunnypatell sunnypatell force-pushed the add-cvss31-GHSA-3j27-563v-28wf branch from e88fae7 to 473e945 Compare February 17, 2026 15:43
@sunnypatell
Copy link
Author

corrected the CVSS vector to use the CNA-sourced score (security-advisories@github.com) instead of the NVD primary score.

@advisory-database advisory-database bot merged commit 81e5c54 into github:sunnypatell/advisory-improvement-6903 Feb 17, 2026
1 check passed
@advisory-database
Copy link
Contributor

Hi @sunnypatell! Thank you so much for contributing to the GitHub Advisory Database. This database is free, open, and accessible to all, and it's people like you who make it great. Thanks for choosing to help others. We hope you send in more contributions in the future!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant