github.com/CycloneDX/sbom-utility@v0.16.0/examples/cyclonedx/VEX/Use-Cases/Case-8/README.md (about)

     1  # VEX Use Case 8
     2  
     3  | Single Product | Multiple Versions (Range) | Single Vulnerability | Affected & Not Affected |
     4  | --- | --- | --- | --- |
     5  
     6  A VEX states that CVE-2020-25649 is not exploitable in versions 2.0.0-2.7.0, 3.0.0-3.2.0, 
     7  3.8.0-4.1.0, and 5.9 of product X. It should be assumed to be exploitable in all other versions.