Skip to content

Class: Vulnerability

Abstract base representation of a security vulnerability. Extended by source-specific schemas (KEV, CVE, NVD).

  • NOTE: this is an abstract class and should not be instantiated directly

URI: core:Vulnerability

 classDiagram
    class Vulnerability
    click Vulnerability href "../Vulnerability/"
      Vulnerability : cve_id

      Vulnerability : description

      Vulnerability : impact





        Vulnerability --> "0..1" Impact : impact
        click Impact href "../Impact/"



      Vulnerability : last_modified_date

      Vulnerability : products





        Vulnerability --> "*" Product : products
        click Product href "../Product/"



      Vulnerability : published_date

      Vulnerability : references





        Vulnerability --> "*" Reference : references
        click Reference href "../Reference/"



      Vulnerability : status





        Vulnerability --> "0..1" VulnerabilityStatus : status
        click VulnerabilityStatus href "../VulnerabilityStatus/"



      Vulnerability : title

      Vulnerability : weaknesses





        Vulnerability --> "*" Weakness : weaknesses
        click Weakness href "../Weakness/"



Slots

Name Cardinality and Range Description Inheritance
cve_id 1
CveId
The CVE identifier assigned by a CVE Numbering Authority (CNA) direct
title 0..1
String
Short human-readable title or name for this entity direct
description 1
String
Narrative description of the vulnerability direct
published_date 0..1
Datetime
Date and time the vulnerability was first published direct
last_modified_date 0..1
Datetime
Date and time the vulnerability record was last modified direct
products *
Product
Products affected by this vulnerability direct
weaknesses *
Weakness
Weakness classifications (e direct
references *
Reference
External references such as advisories and articles direct
impact 0..1
Impact
Impact and severity assessment for this vulnerability direct
status 0..1
VulnerabilityStatus
Current lifecycle state of the vulnerability record direct

In Subsets

Identifier and Mapping Information

Schema Source

Mappings

Mapping Type Mapped Value
self core:Vulnerability
native core:Vulnerability
exact WIKIDATA:Q631425
related schema:SoftwareApplication

LinkML Source

Direct

name: Vulnerability
description: Abstract base representation of a security vulnerability. Extended by
  source-specific schemas (KEV, CVE, NVD).
in_subset:
- core
from_schema: https://w3id.org/lmodel/vulnerability-core
exact_mappings:
- WIKIDATA:Q631425
related_mappings:
- schema:SoftwareApplication
abstract: true
slots:
- cve_id
- title
- description
- published_date
- last_modified_date
- products
- weaknesses
- references
- impact
- status
slot_usage:
  cve_id:
    name: cve_id
    required: true
  description:
    name: description
    required: true

Induced

name: Vulnerability
description: Abstract base representation of a security vulnerability. Extended by
  source-specific schemas (KEV, CVE, NVD).
in_subset:
- core
from_schema: https://w3id.org/lmodel/vulnerability-core
exact_mappings:
- WIKIDATA:Q631425
related_mappings:
- schema:SoftwareApplication
abstract: true
slot_usage:
  cve_id:
    name: cve_id
    required: true
  description:
    name: description
    required: true
attributes:
  cve_id:
    name: cve_id
    description: 'The CVE identifier assigned by a CVE Numbering Authority (CNA).
      Format: CVE-YYYY-NNNNN.'
    in_subset:
    - metadata
    from_schema: https://w3id.org/lmodel/vulnerability-core
    aliases:
    - cveID
    exact_mappings:
    - schema:identifier
    rank: 1000
    slot_uri: dct:identifier
    identifier: true
    alias: cve_id
    owner: Vulnerability
    domain_of:
    - Vulnerability
    range: CveId
    required: true
  title:
    name: title
    description: Short human-readable title or name for this entity.
    in_subset:
    - metadata
    from_schema: https://w3id.org/lmodel/vulnerability-core
    exact_mappings:
    - schema:name
    rank: 1000
    slot_uri: dct:title
    alias: title
    owner: Vulnerability
    domain_of:
    - Vulnerability
    range: string
  description:
    name: description
    description: Narrative description of the vulnerability.
    in_subset:
    - core
    from_schema: https://w3id.org/lmodel/vulnerability-core
    exact_mappings:
    - schema:description
    rank: 1000
    slot_uri: dct:description
    alias: description
    owner: Vulnerability
    domain_of:
    - Vulnerability
    - Weakness
    range: string
    required: true
  published_date:
    name: published_date
    description: Date and time the vulnerability was first published.
    in_subset:
    - core
    from_schema: https://w3id.org/lmodel/vulnerability-core
    rank: 1000
    slot_uri: dct:created
    alias: published_date
    owner: Vulnerability
    domain_of:
    - Vulnerability
    range: datetime
  last_modified_date:
    name: last_modified_date
    description: Date and time the vulnerability record was last modified.
    in_subset:
    - core
    from_schema: https://w3id.org/lmodel/vulnerability-core
    rank: 1000
    slot_uri: dct:modified
    alias: last_modified_date
    owner: Vulnerability
    domain_of:
    - Vulnerability
    range: datetime
  products:
    name: products
    description: Products affected by this vulnerability.
    in_subset:
    - core
    from_schema: https://w3id.org/lmodel/vulnerability-core
    rank: 1000
    alias: products
    owner: Vulnerability
    domain_of:
    - Vulnerability
    range: Product
    multivalued: true
    inlined_as_list: true
  weaknesses:
    name: weaknesses
    description: Weakness classifications (e.g. CWE) associated with this vulnerability.
    in_subset:
    - core
    from_schema: https://w3id.org/lmodel/vulnerability-core
    rank: 1000
    alias: weaknesses
    owner: Vulnerability
    domain_of:
    - Vulnerability
    range: Weakness
    multivalued: true
    inlined_as_list: true
  references:
    name: references
    description: External references such as advisories and articles.
    in_subset:
    - core
    from_schema: https://w3id.org/lmodel/vulnerability-core
    rank: 1000
    alias: references
    owner: Vulnerability
    domain_of:
    - Vulnerability
    range: Reference
    multivalued: true
    inlined_as_list: true
  impact:
    name: impact
    description: Impact and severity assessment for this vulnerability.
    in_subset:
    - core
    from_schema: https://w3id.org/lmodel/vulnerability-core
    rank: 1000
    alias: impact
    owner: Vulnerability
    domain_of:
    - Vulnerability
    range: Impact
  status:
    name: status
    description: Current lifecycle state of the vulnerability record.
    in_subset:
    - core
    from_schema: https://w3id.org/lmodel/vulnerability-core
    rank: 1000
    alias: status
    owner: Vulnerability
    domain_of:
    - Vulnerability
    range: VulnerabilityStatus