Standard and Deep scans can assign different severities to the same vulnerability despite analyzing the same repository revision and substantially equivalent evidence.
Reproduction: run both scan modes against the same synthetic vulnerable repository and compare severity levels for matching findings across repeated runs.
Expected: materially equivalent findings receive consistent severities, or any difference is explained by additional evidence recorded in the finding.
Standard and Deep scans can assign different severities to the same vulnerability despite analyzing the same repository revision and substantially equivalent evidence.
Reproduction: run both scan modes against the same synthetic vulnerable repository and compare severity levels for matching findings across repeated runs.
Expected: materially equivalent findings receive consistent severities, or any difference is explained by additional evidence recorded in the finding.