• ___@lemm.ee
      link
      fedilink
      English
      arrow-up
      3
      ·
      6 months ago

      A system fault is not the same as a vulnerability. These would have different baseline CVSS 3.1 scores, with the temporal and environmental reducing over time. A medium/low at best for a public endpoint exposing PII.

    • brrt@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      3
      arrow-down
      4
      ·
      6 months ago

      That’s like saying going through someone’s trash is breaking and entering.