Agnostic Guides
VersaFile Release Management

Managing Security Issues

1min

If critical security issues are found, security advisories are used to manage the issue and communications around it.

The following security advisory template is used to track the security issue:

  • Title/Name/Description
  • Package/Code Name
  • Affected Versions
  • Patched Versions
  • Severity is defined as the following:
    • Low (1-3)
    • Moderate (4-6)
    • High (7-8)
    • Critical (9-10)
  • This severity level will be determined using the industry standard Common Vulnerability Scoring System (CVSS) v3.1.
  • A write-up on the issue that can be sent out using the following template:
### Impact _What kind of vulnerability is it? Who is impacted?_ ### Patches _Has the problem been patched? What versions should users upgrade to?_ ### Workarounds _Is there a way for users to fix or remediate the vulnerability without upgrading?_ ### References _Are there any links users can visit to find out more?_ ### For more information If you have any questions or comments about this advisory: * Email us at [VersaFile Support] (mailto:[email protected])



Updated 03 Mar 2023
Doc contributor
Did this page help you?