• /
  • EnglishEspañolFrançais日本語한국어Português
  • EntrarComeçar agora

Understanding vulnerability prioritization

This document covers:

  • Where to find priority ranks in Security RX
  • What data factors into the priority ranks of vulnerabilities

Viewing priority rank in Security RX

To view the priority rank of vulnerabilities in Security RX, go to one.newrelic.com > All capabilities > Security RX > All Vulnerabilities.

The priority ranking is based on all known data about a vulnerability. The Reason to prioritize column is a summary and weighting of key CVSS (Common Vulnerability Scoring System), EPSS (Exploit Prediction Scoring System) and known active ransomware data.

Data influencing priority rank

Example of ranking logic

A vulnerability that's "high" severity with an EPSS of "exploit probable" might rank higher than a vulnerability with a "critical" severity with an EPSS level that's lower than an 85th percentile probability of exploitation.

What's next?

Now that you understand how vulnerabilities are prioritized, start managing them:

Security RX for Applications

Start monitoring and remediating application vulnerabilities

Security RX for Infrastructure

Start monitoring and remediating infrastructure vulnerabilities

Manage vulnerability status

Change status to Ignored, Affected, or Fixed

Set up alerts

Get notified when high-priority vulnerabilities are detected

Copyright © 2025 New Relic Inc.

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.