Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Randomly generated test data contains malformed CVSS4 strings with invalid order #66

Open
superbuggy opened this issue Oct 23, 2024 · 1 comment
Labels

Comments

@superbuggy
Copy link
Collaborator

Section 7: Table 23 of the CVSS4 spec prescribes an ordering of the metric name components of a CVSS vector string. Values in vectors_random4 appear to be malformed.

@superbuggy superbuggy added the bug label Oct 23, 2024
@skontar
Copy link
Collaborator

skontar commented Nov 1, 2024

Also the CVSS4 class accepts them, so that needs to be fixed also.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

2 participants