Skip to content

Define workflows that show how GLVD2 integrates into our work and how CVE are triaged #35

Description

@sh4sm

We need a set of workflows that document how GLVD2 should be used in our daily routine to triage CVEs. What is the lifecycle of a CVE with GLVD2 (from first detection to final decision).

Moreover, create workflows that show how GLVD2 will interact with maintainers and security officers via Github issues. For example what commands are needed inside the issues and what influence do they have on the CVE processing.

Additionally, we need to define which changes to a CVE trigger a re-evaluation and how the workflows for this including the required Github issue communication will look like.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions