Interlynk
Platform Docs
Platform Docs
  • đź‘‹Getting Started
  • Overview
    • ✨Interlynk Features
    • đź§­Navigating Dashboard
  • Product Guides
    • Interlynk Basics
      • Product
      • Version
      • SBOM
        • General
        • Parts
        • Component
        • License
        • Support
      • Vulnerability
      • Policy
      • Compliance
    • Managing Product
    • Importing SBOM
      • SBOM Checks
      • Automation Rules
      • Internal Components
      • Vulnerability Scan
    • Building SBOM
    • Managing SBOM
      • Editing General
      • Updating Components
      • Disposing Vulnerabilities
      • Evaluating Compliance
    • Distributing SBOM
    • Requesting SBOM
    • Monitoring Risks
    • Managing Policy
    • Inventorying Licenses
    • Auditing Changes
    • Managing Notifications
  • Administration
    • Getting Set Up
    • Inviting Users
    • Managing Roles
    • Setting Integrations
  • Use Cases
    • For Management
    • For Security Engineers
    • For OSPO Engineers
  • SUPPORT
    • Technical Support
    • Release Notes
Powered by GitBook
On this page
  1. Product Guides
  2. Importing SBOM

Vulnerability Scan

PreviousInternal ComponentsNextBuilding SBOM

Last updated 9 months ago

The platform periodically runs vulnerability scans on imported SBOM for a version and supports disabling vulnerability scans if necessary.

With the SBOM in Interlynk, each vulnerability's exploitability status (e.g., Not Applicable or Fixed) can be recorded in place and exported as VEX.

However, in a build/release pipeline, the newer versions might have the same vulnerability and exploitability status.

Interlynk supports retaining exploitability status across newer SBOMs if the underlying data—the vulnerable component name and version—does not change.

See '' for more details on vulnerabilities and their exploitability status.

Managing Vulnerability Scan

Disable Vulnerabilty Scan
  1. Click on the 'Products' side-navigation button

  2. Click on the Product Name (or specific Environment icon of the Product)

  3. Click on the 'Settings' tab

  4. Toggle the 'Vulnerability Scan' switch to disable running the scan

  5. These settings are specific to the Environment, and to disable all Environments, you must switch to each one and disable Vulnerability Scan.

Retaining Vulnerability Status
  1. Click on the 'Products' side-navigation button

  2. Click on the Product Name (or specific Environment icon of the Product)

  3. Click on the 'Settings' tab

  4. Toggle the 'Retain Vulnerability Status' switch to retain vulnerability status

  5. These settings are specific to the Environment, and to disable all Environments, you must switch to each one and toggle Retain Vulnerability Status.

ℹ️
ℹ️
Disposing Vulnerabilities