Use the vulnerability list

Last updated: July 16, 2026

Use this article when you want to triage, filter, or prioritize vulnerabilities from the main vulnerability table.

What to check first

  • Open the Vulnerabilities view.
  • Check whether the default filters are hiding resolved, closed, untriaged, non-default-branch, or all-branch findings.
  • Use Filters to narrow by type, status, severity, impact, asset, application, assignee, branch, tag, or path.
  • Use Secret Assessment to separate Provider check and Context assessment secret findings.

Important columns

  • Vulnerability: severity, title, type-specific context, and a Provider check or Context assessment badge for secret findings.
  • Asset: repository or source where the vulnerability appears.
  • Introduced: when Cysmiq first detected the vulnerability.
  • Impact: attacker outcomes such as account takeover, data access, or command execution.
  • Lifecycle: current status and resolution when set.
  • Assignee: current owner and assignment controls.

Secret assessment methods

  • Provider check: Cysmiq checks a supported credential with its provider to determine whether it is valid and active.
  • Context assessment: when a provider check is unavailable, Cysmiq reviews the detection and source context to help determine whether it is actionable.

Common actions

  • Open a row to review the full vulnerability detail page.
  • Select multiple rows to change status or resolution in bulk.
  • Export selected rows when you need an offline list.
  • Save recurring filter sets as saved views for repeated workflows.

Canonical docs

For the maintained reference, see Vulnerability list view.

Contact support if

  • A vulnerability you expect to see does not appear after filters are cleared.
  • Counts in the table do not match another view or report.
  • A row is missing asset, lifecycle, assignee, or vulnerability context.