Findings & intelligence

Review vulnerabilities matched to your assets

Use Secorvia Vulnerability Matches to distinguish open and resolved correlations and trace a CVE to an affected resource or image.

Reviewed

Before you start

Resources or image package inventories must exist, and the vulnerability catalog must be populated for correlation to be meaningful.

Open your organization matches

Open Vulnerability Matches. This view is scoped to discovered subjects in your organization, unlike the broader Vulnerabilities catalog.

Filter by subject and status

Use All subject types to narrow the affected kind of asset and choose Open or Resolved under status. Clear filters if an expected match does not appear.

Trace the affected subject

Review the matched resource or image and its CVE. For container results, open Container Security and inspect installed packages and any Fixed in version. Confirm the image digest or resource identity before coordinating a deployment change.

Refresh the supporting inventory

If there are no matches, follow the page’s correlation action when available and check that discovery produced usable data. After patching, refresh the affected inventory or image scan and correlation before assessing whether the match is resolved.

Where you are now

You have an organization-specific list of affected subjects and a way to verify a remediation against fresh data.

WHEN SOMETHING LOOKS OFF

A few things to check

No vulnerability matches found

Check subject/status filters, inventory availability, and catalog synchronization. An empty list alone does not prove all packages were assessed.

PUT IT INTO PRACTICE

Make your next move in Secorvia.

Open the app and follow along with your own organization.

Open Secorvia