Search
Search Indirect Tax Support Help and Support.

Security Vulnerabilities Report

View and download point-in-time security vulnerability reports for Determination Anywhere (DA) release versions.

Purpose

Use the Security Vulnerabilities Report to view unresolved vulnerabilities for each DA release. Thomson Reuters' Snyk scanning tool identifies these vulnerabilities. You can use the report to review the security posture of the DA version you use. You don’t need to request this information from Thomson Reuters.

Location

In Enterprise Cloud, open the
Determination Anywhere
menu and select
Security Vulnerabilities Report
. The breadcrumb displays
Determination Anywhere > Security Vulnerabilities Report
. Select
Determination Anywhere
in the breadcrumb to return to the DA menu.

Availability and access

The screen is read-only and is available to users who can sign in to the tenant and access the DA menu. No additional permissions are required.
If the tenant doesn’t have an active DA subscription, a message indicates that no DA instances exist instead of displaying report entries.

Report contents

The
Open Vulnerabilities (Snyk)
section lists DA releases with the newest version first. Each release includes a
Report
link that downloads a ZIP file containing a PDF report for each scanned application image.
The PDF reports lists open CVEs at all severity levels:
Critical
,
High
,
Medium
, and
Low
. Release version identifiers use the same format as the DA Dashboard, for example,
DA-2026.05.03
.

Report scope

Each report is a snapshot created when its DA release is issued. It doesn’t change if additional vulnerabilities are identified later.
Only unresolved vulnerabilities appear in the report. For vulnerabilities that have been fixed or closed, review the Release Notes for the DA release.