Contributor Ranking System
Composite Score
The contributor ranking prioritizes real-world impact (affected users and digital assets) over the sheer quantity of CVEs, with CVE count as a tiebreaker.
Factors we consider
-
Affected users and assets: Maximum values per unique product to avoid overcounting across multiple vulnerabilities on the same product.
-
Total impact: Sum of max affected users and max affected assets across products.
-
CVE count: Number of CVEs credited, used as tiebreaker.
-
Sorting: Primarily by total impact (descending), then by CVE count (descending).