Similar to a previous thread in EPSS SIG with BenE - SSVC BenE article/analysis of published CVEs with SSVC https://www.bitsight.com/blog/do-we-need-yet-another-vulnerability-scoring-system-ssvc-thats-yass - How https://riskbasedprioritization.github.io/ssvc/decision_trees_from_scratch/#decision-tree-node-inputs compares