Skip to content

Add CVSS 3.1 severity for GHSA-xgj4-2hrf-j4xg#6902

Open
sunnypatell wants to merge 1 commit intogithub:sunnypatell/advisory-improvement-6902from
sunnypatell:add-cvss31-GHSA-xgj4-2hrf-j4xg
Open

Add CVSS 3.1 severity for GHSA-xgj4-2hrf-j4xg#6902
sunnypatell wants to merge 1 commit intogithub:sunnypatell/advisory-improvement-6902from
sunnypatell:add-cvss31-GHSA-xgj4-2hrf-j4xg

Conversation

@sunnypatell
Copy link

adds NVD-sourced CVSS 3.1 severity score to this advisory which currently has no CVSS scoring.

  • source: NVD
  • score: 6.1 (MEDIUM)
  • vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Copilot AI review requested due to automatic review settings February 16, 2026 00:38
@github-actions github-actions bot changed the base branch from main to sunnypatell/advisory-improvement-6902 February 16, 2026 00:40
Copy link

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This pull request adds NVD-sourced CVSS 3.1 severity scoring to security advisory GHSA-xgj4-2hrf-j4xg, which previously had no CVSS scoring information. The advisory concerns a Cross-Site Scripting (XSS) vulnerability in SurveyJS Survey Creator.

Changes:

  • Added CVSS 3.1 vector string CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N (score: 6.1 MEDIUM) to the severity array

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant