SSVC — Stakeholder-Specific Vulnerability Categorization

The CERT/CC SSVC framework: a tree of decision points (each with a small set of values) and decision tables whose outcome groups sort a vulnerability into a prioritisation bucket. This is a methodology view — per-CVE SSVC scores appear on each CVE detail page. Aggregated once per SSVC feeder cycle by SsvcFeeder. Last updated: 2026-09-12T01:29:26.911046331+00:00.

Decision points
Decision tables
Namespaces
Published versions
Decision points by namespace
NamespaceDecision points
Loading…
Decision tables (outcome groups)
JSON
NamespaceTable Inputs Outcome group Rows
Loading…
Decision points & their values
JSON
Namespace Decision point Version Values
Loading…