Which Drupal security team practice helps organizations assess the risk severity of a disclosed vulnerability?
-
A
Publishing a CVSS score with each security advisory
-
B
Requiring all sites to run automated penetration tests
-
C
Mandating two-factor authentication for all admins
-
D
Blocking all unauthenticated traffic by default