Skip to content

Commit 5bd991f

Browse files
Merge branch 'main' into WI422401-remove-open-app-connector-platform-doc
2 parents ecfe869 + 1532f84 commit 5bd991f

File tree

2 files changed

+16
-4
lines changed

2 files changed

+16
-4
lines changed

defender-vulnerability-management/defender-vulnerability-management-faq.md

Lines changed: 13 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ ms.collection:
1414
- Tier1
1515
ms.topic: conceptual
1616
search.appverid: met150
17-
ms.date: 02/08/2025
17+
ms.date: 05/02/2025
1818
---
1919

2020
# Microsoft Defender Vulnerability Management frequently asked questions
@@ -118,6 +118,18 @@ Currently Windows is supported, but coverage will be expanded to more operating
118118

119119
For details on the full list of capabilities across Microsoft Defender Vulnerability Management and Defender for Endpoint, see [Defender Vulnerability Management Capabilities](defender-vulnerability-management-capabilities.md).
120120

121+
### What happens to CVEs that are marked as "won't fix"?
122+
123+
Defender Vulnerability Management currently filters out CVEs marked as "Won't Fix", particularly on Linux platforms, from vulnerability recommendations and security score calculations. This design choice was implemented to reduce noise from non-actionable issues and improve signal-to-noise ratio for security teams.
124+
125+
Certain Linux distributions, such as RHEL, include large numbers of CVEs labeled as "Won't Fix" due to platform-specific or architectural decisions. These CVEs were previously displayed in the Microsoft Defender portal, but they caused confusion and inflated the recommendations list and exposure score. As a result, these were intentionally removed following internal review and Data Subject Rights (DSR) requests.
126+
127+
Here's what to expect:
128+
129+
- "Won't Fix" CVEs are not shown in the [Microsoft Defender portal](https://security.microsoft.com).
130+
- These CVEs are excluded from vulnerability recommendations and scoring.
131+
- There is no current workaround to view them in the product experience.
132+
121133
### Can customers buy only one capability?
122134

123135
Microsoft Defender Vulnerability Management is available as a vulnerability management solution comprised of multiple premium capabilities.

defender-vulnerability-management/tvm-dashboard-insights.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ ms.collection:
1313
ms.custom: admindeeplinkDEFENDER
1414
ms.topic: concept-article
1515
search.appverid: met150
16-
ms.date: 03/06/2025
16+
ms.date: 05/02/2025
1717
---
1818

1919
# Microsoft Defender Vulnerability Management dashboard
@@ -31,15 +31,15 @@ Defender vulnerability management provides both security administrators and secu
3131
- Invaluable device vulnerability context during incident investigations
3232
- Built-in remediation processes through Microsoft Intune and Microsoft Endpoint Configuration Manager
3333

34-
You can use Defender Vulnerability Management dashboard in the Microsoft Defender portal to:
34+
You can use Defender Vulnerability Management dashboard in the [Microsoft Defender portal](https://security.microsoft.com) to:
3535

3636
- View your exposure score and Microsoft Secure Score for Devices, along with top security recommendations, software vulnerability, remediation activities, and exposed devices
3737
- Correlate EDR insights with endpoint vulnerabilities and process them
3838
- Select remediation options to triage and track the remediation tasks
3939
- Select exception options and track active exceptions
4040

4141
> [!NOTE]
42-
> Devices that aren't active in the last 30 days aren't factored in on the data that reflects your organization's vulnerability management exposure score and Microsoft Secure Score for Devices.
42+
> Devices that aren't active in the last 30 days aren't factored in on the data that reflects your organization's vulnerability management exposure score and Microsoft Secure Score for Devices. In addition, CVEs marked as "won't fix" are not shown in the Microsoft Defender portal, and they're not included in vulnerability recommendations or scoring.
4343
4444
Watch this video for a quick overview of what is in the Defender Vulnerability Management dashboard.
4545

0 commit comments

Comments
 (0)