Vulnerabilities · GraphQL type

PlatformVulnerabilities type

Type PlatformVulnerabilities pairs the CPE (Common Platform Enumeration) identifiers determined for an object with the CVEs (Common Vulnerabilities and Exposures) those identifiers match.

The identifiers describe what the object is — its operating system, hardware model, or installed software and version. The CVE list is resolved from the vulnerability catalog when requested rather than stored with the object, so it always reflects the current catalog: a CVE published today appears against a version that was installed months ago.

An object exposes this only when its identity could be determined precisely enough to match accurately. Software that could not be identified to a specific vendor, product, and version reports nothing here rather than a broad identifier that would match unrelated vulnerabilities.

See also CVE for the full detail of an individual identifier in the CVEs list.

Fields

Field Name Description
cpes - [String!]! The CPE identifiers determined for this object, in CPE 2.3 formatted-string form (e.g. cpe:2.3:a:google:chrome:131.0.6778.86:*:*:*:*:*:*:*). At most one identifier is reported for each CPE part: application, operating system, and hardware.
cves - [ID!]! The unique identifiers of every CVE in the vulnerability catalog that matches any of the CPEs, sorted oldest first (e.g. CVE-2024-1234). Each is the id of a CVE and can be passed straight to vulnerabilityFetchCVE for its full detail. Empty when no catalogued vulnerability affects the identified versions.

Used by

  • ApplicationInstall type: One installed copy of an application on one Endpoint.
  • Endpoint type: A Windows, macOS, or Linux computer that runs the Wartiva endpoint agent and is enrolled with an organization.
  • Service type: A network service identified on a discovered Device: one protocol (such as HTTP, TLS, SSH, SMB, DNS, SNMP, IPP, mDNS, or UPnP) acting as a client or…

Related types

  • CVE Type CVE represents a Common Vulnerabilities and Exposures entry with comprehensive security information

Example

Example

{
  "cpes": ["abc123"],
  "cves": ["4"]
}