LogoLogo
⌘Ctrlk
BlogSupport
  • Home
AI Assistant

I'm here to help you with the docs.

⌘Ctrli
AI Based on your context
LogoLogo
    • Cortex Cloud Application Security
    • Onboard data sources
    • Application Security dashboard
    • AppSec Objectives with Agentix
    • Code-to-Cloud
    • What is Application Security Posture Management (ASPM)
    • ASPM Command Center
    • Business applications
    • Repository as an asset
    • Coverage
    • Urgency
    • Backlog baseline
    • Service Lead Agreements (SLA)
    • Compliance for Cortex Cloud Application Security
    • Unified Application Security policies
    • Application Security Rules
    • Manage SAST code weakness issues
    • Manage the third-party data lifecycle
    • Software Supply Chain Security
    • Supply Chain Attacks
    • Visibililty and inventory
    • Risk and remediation
      • Software Composition Analysis (SCA )
        • Supported Software Composition Analysis (SCA) frameworks and languages
        • Software Composition Analysis (SCA) vulnerability issues
          • Understand the Vulnerabilities table
          • Investigate, prioritize and remediate vulnerability issues
          • View and understand CVE findings
          • References
            • Reference A: Prioritization metrics
            • Reference B: Investigation details
        • License miscompliance issues
        • Ingest third-party SCA data
      • CI/CD Risks
      • Malicious packages
    • Governance and enforcement
    • About Code security
    • Code Security assets
    • Code Security scanners
    • API workflows for Code Security issues
    • Manage Application Security scans
    • Application Security Cortex CLI
    • IDE
    • Developer suppressions
    • About API endpoints
    • Data source integrations
    • Unified Application Security policies
    • Application criteria
    • Manage applications
    • Repositories and scan configurations
    • Business applications
    • Scans, issues, and findings
    • About Terraform workflows
    • Authentication and configuration
    • Manage resources
For the complete documentation index, see llms.txt. This page is also available as Markdown.
  1. Guides
  2. Cortex Cloud
  3. Application Security
  4. Software supply chain security
  5. Risk and remediation
  6. Software Composition Analysis (SCA )
  7. Software Composition Analysis (SCA) vulnerability issues

References

Reference A: Prioritization metricsReference B: Investigation details
PreviousView and understand CVE findings
NextReference A: Prioritization metrics

Was this helpful?

LogoLogo

‍

  • Trust Center

‍

  • Privacy

‍

  • Terms of Use

‍

  • Legal

© 2026 Palo Alto Networks, Inc. All rights reserved.

Was this helpful?