Use the vulnerability list
Last updated: July 16, 2026
Use this article when you want to triage, filter, or prioritize vulnerabilities from the main vulnerability table.
What to check first
- Open the Vulnerabilities view.
- Check whether the default filters are hiding resolved, closed, untriaged, non-default-branch, or all-branch findings.
- Use Filters to narrow by type, status, severity, impact, asset, application, assignee, branch, tag, or path.
- Use Secret Assessment to separate Provider check and Context assessment secret findings.
Important columns
- Vulnerability: severity, title, type-specific context, and a Provider check or Context assessment badge for secret findings.
- Asset: repository or source where the vulnerability appears.
- Introduced: when Cysmiq first detected the vulnerability.
- Impact: attacker outcomes such as account takeover, data access, or command execution.
- Lifecycle: current status and resolution when set.
- Assignee: current owner and assignment controls.
Secret assessment methods
- Provider check: Cysmiq checks a supported credential with its provider to determine whether it is valid and active.
- Context assessment: when a provider check is unavailable, Cysmiq reviews the detection and source context to help determine whether it is actionable.
Common actions
- Open a row to review the full vulnerability detail page.
- Select multiple rows to change status or resolution in bulk.
- Export selected rows when you need an offline list.
- Save recurring filter sets as saved views for repeated workflows.
Canonical docs
For the maintained reference, see Vulnerability list view.
Contact support if
- A vulnerability you expect to see does not appear after filters are cleared.
- Counts in the table do not match another view or report.
- A row is missing asset, lifecycle, assignee, or vulnerability context.