|
||||
Looking at the following, it appears that a CVE was issued for the potential that someone might upgrade software to a vulnerable version, which has another CVE. I don't think this should qualify as a CVE, given the actual vulnerability already has one. https://cve.org/CVERecord?id=CVE-2017-5698 Should this CVE be rejected? Regards, Dave