Skip to content

Add CVSS 3.1 severity for GHSA-73v2-rxqp-7q4f#6908

Open
sunnypatell wants to merge 1 commit intogithub:sunnypatell/advisory-improvement-6908from
sunnypatell:add-cvss31-GHSA-73v2-rxqp-7q4f
Open

Add CVSS 3.1 severity for GHSA-73v2-rxqp-7q4f#6908
sunnypatell wants to merge 1 commit intogithub:sunnypatell/advisory-improvement-6908from
sunnypatell:add-cvss31-GHSA-73v2-rxqp-7q4f

Conversation

@sunnypatell
Copy link

adds NVD-sourced CVSS 3.1 severity score to this advisory which currently has no CVSS scoring.

  • source: NVD
  • score: 9.8 (CRITICAL)
  • vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Copilot AI review requested due to automatic review settings February 16, 2026 00:40
@github-actions github-actions bot changed the base branch from main to sunnypatell/advisory-improvement-6908 February 16, 2026 00:42
Copy link

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR adds CVSS 3.1 severity scoring information to a GitHub Security Advisory (GHSA-73v2-rxqp-7q4f) for a command injection vulnerability in aliyundrive-webdav. The advisory previously lacked severity scoring, and this update incorporates the NVD-sourced CVSS 3.1 score of 9.8 (CRITICAL).

Changes:

  • Added CVSS 3.1 severity scoring with vector string to the advisory JSON

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant