Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Import Common Vulnerability Reporting Framework (CVRF) data through CVRF URL

Import CVRF data by configuring the vendor URL in the Setup Assistant.

Before you begin

Role required: sn_vul.vulnerability_admin, sn_vul.admin (deprecated), or admin

About this task

When the integration runs, data is fetched from the URL that gets parsed. Data is then stored in the sn_vul_solution table with source as the vendor name.

Note: Oracle directly publishes the CVRF URL for providing solutions. Thus, if you want to configure the integration for importing Oracle data, then ensure you have the CVRF URL for Oracle and follow the following steps.

Procedure

  1. Navigate to Vulnerability Response > Administration > Setup Assistant > Integration Configuration > Solution Integrations > Common Vulnerability Response Framework.

  2. Click Add Integration.

  3. On the form, fill in the fields.

FieldDescription
Import typeType of import. Select URL.
NameUnique name for the integration.
VendorName of the vendor.Note: The Source field of the solutions is populated with the Vendor name.
URLURL from which you want to fetch the solution data in the CVRF format.
ScheduleFrequency at which the data must be updated. Note: If the status tag of CVRF shows “FINAL”, then the field is automatically set to On Demand to prevent unnecessary runs.
DayDay of the week when you want the data to get updated.
TimeTime of the week when you want the data to get updated.
  1. Click Finish.