We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 941ecd0 commit 8e880fcCopy full SHA for 8e880fc
doc/triage.md
@@ -216,3 +216,11 @@ Commonly missing packages include:
216
217
- libgpgme-dev
218
- libdevmapper-dev
219
+
220
+### "awaiting analysis"
221
222
+When the NIST page says "AWAITING ANALYSIS", write the report; don't wait for them
223
+to finish their analysis. "Awaiting analysis" just means that NVD hasn't yet looked
224
+at the vulnerability and assigned a severity score/CWE etc. Since we don't care about
225
+those pieces of information, we can ignore that banner and just create a report if
226
+the vulnerability is in scope for our database.
0 commit comments