Fortify Exploitability Analysis

Triage whether a known CVE/GHSA vulnerability is actually exploitable in this project. Use when the user wants a reachability verdict on a specific advisory — is the project really affected, or is the advisory noise? Analysis only; for fixes, hand off to fortify-dependency-upgrade.

fortify de68df8 23 files · 132.0 KB Updated

File contents

fortify/skills/tree/main/skills/fortify-exploitability-analysis commit de68df8344

Frequently asked questions

npx skillmds@latest add fortify/fortify-exploitability-analysis