Skip to main content

VendorCveInfo

Fields

nametypenullabledescription
vendorVendorfalse--
publicationDateDatetrueThe date that this vendor published an advisory for this CVE. Absent if no publication date is known.
urlStringtrueThe URL to the security advisory for this CVE from this vendor.
severitySeverityfalseThe severity corresponding to baseScoreV4 if that score is known. Otherwise, the severity corresponding to baseScoreV3 if that score is known. Otherwise, the severity corresponding to baseScoreV2 if that score is known. Otherwise, no score is known and this value is NONE.
hasKnownExploitBooltrueWhether this vendor has reported exploitation of this CVE in their security advisory (the URL in the url field). More specifically, the value is true if the vendor has reported exploitation of this CVE in their security advisory, and the value is false if the vendor has reported that there is no known exploitation of this CVE in their security advisory or the vendor does not say anything one way or the other about known exploitation of this CVE in their security advisory. Absent if Forward Networks does not know what the vendors says about exploitation of this CVE in their security advisory. Also, the value will never be false for now.
baseScoreFloattrueThe base score in version 4 of the CVSS if that score is known. Otherwise, the base score in version 3 of the CVSS if that score is known. Otherwise, the base score in version 2 of the CVSS if that score is known. Otherwise, no score is known and this value is absent.
baseScoreV2FloattrueThe base severity score in version 2 of the CVSS. Absent if it does not exist or is not known.
baseScoreV3FloattrueThe base severity score in version 3 of the CVSS. Absent if it does not exist or is not known.
baseScoreV4FloattrueThe base severity score in version 4 of the CVSS. Absent if it does not exist or is not known.
descriptionStringtrue--
criteriaBag<CveProductCriteria>false--

Used by

network → cveDatabase → cves → vendorInfos

See also

Data model path