Skip to content

[FE] - Add EPSS/KEV/CVSS scores to vulnerability report table

Implement the design from:

With some exceptions:

  • Do not implement EPSS as popover, for now embed in the column under the severity. (As discussed with Product and UX) (John and Becka)

  • Popover will be added as we begin to add new scores in the future.

design

Implementation Plan

New field is defined in !162435 (diffs), it should be:

epss {
  cve
  score
}
  1. Add field to graphQL query request

  2. Add the EPSS score into a separate new VulnerabilityScore component. VulnerabilityScore component because it will eventually encapsulate the popover logic as well

  3. Update table component to include new VulnerabityScore component

Weight Estimation

Dev work is about 2 points. 1 point for project set-up/manual verification and unit tests.

Edited by Fernando Cardenas