Company
Date Published
Author
James McLean
Word count
1075
Language
English
Hacker News points
None

Summary

The Vulnerability Rating Taxonomy (VRT) has undergone significant updates with the release of version 1.11, reflecting changes in the threat environment and evolving needs of hackers and customers. The new top-level category "Cryptographic Weaknesses" covers common flaws in cryptography areas, while multiple categories have been updated to improve accuracy and reduce false positives. New variants have been added to address specific vulnerabilities such as HTML injection, server-side request forgery, HTTP request smuggling, LDAP injection, and PII leakage. The updates aim to enhance the taxonomy's alignment with industry standards and better support the Bugcrowd community's contributions.