I've been working with the security pages recently, and there are two things I propose.
First, I'd like to simplify the way we include the full CVE content. Instead of embedding it in the CVE table as a show/hide element, I'd like to link out to an independent page. I think this will make it a little easier to author, avoid what will become a giant page, and give the CVE its own URL. Under this plan, the tables would remain as they are now, but the full CVE would be hosted at a standard location. The table would simply link to the CVE page. input/cves/CVE-2016-9999.md output/cves/CVE-2016-9999.html Second, a small thing. I will add links from the component pages to their contained security pages. Right now you have to navigate from the top-level security page.
