Currently it's not possible to distinguish between less risky, medium risky, and high risky vulnerabilities. All are the same from IBM perspective.
So the CVSS score (v3) would be a great help to use it in ci/cd pipelines and distinguish between blockers and warnings.
By clicking the "Post Comment" or "Submit Idea" button, you are agreeing to the IBM Ideas Portal Terms of Use.
Do not place IBM confidential, company confidential, or personal information into any field.