Rapid7 Vulnerabilities API
A Vulnerability is a resource that encapsulates any information found by any Scan over the lifetime of an App, that may identify where and how an App could be exploited. Each Vulnerability contains information about the Root Cause (location) and Variances (attack types and natures) which contribute to the evidence that the Vulnerability exists. A Vulnerability cannot be explicitly created or deleted via the API, as its life cycle is managed by the product; but, it can be implicitly created by submitting a Scan and can be implicitly deleted by deleting the App that owns it. There are a number of fields which are mutable and can help to control the workflow of the management of an App's Vulnerabilities.