Is it possible that a CVE does not have any CVSS source? #9888
Unanswered
quentinkhoo
asked this question in
Q&A
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
Question
I noticed that in one of my trivy scans, there'es no CVSS field at all even though the nvd database does have a (CVSS4.0) result for it. is this expected? for context im talking about CVE-2025-58367. this was my trivy result.
Target
Container Image
Scanner
Vulnerability
Output Format
JSON
Mode
Standalone
Operating System
MacOS Darwin Kernel Version 25.1.0
Version
Beta Was this translation helpful? Give feedback.
All reactions