The application provides a
vulnerability repair method and
system, and relates to the technical field of
network security vulnerability verification and enterprise
vulnerability management. The application obtains a task containing a vulnerability identifier, asset information and to-be-verified repair content, processes the task in parallel according to a pipeline split according to business execution steps, and configures a
resource pool matching external dependencies for each stage; a stage
fingerprint is generated when the task is transferred, a result is reused when a subtask is executed, otherwise the execution is scheduled according to vulnerability harm, asset importance and
threat intelligence, and the vulnerability repair is completed according to the
verification result. The application solves the problems of low
throughput of the existing general pipeline,
slow response of high-priority tasks, and easy starvation of low-priority tasks, and achieves the effect of collaborative optimization of
throughput improvement, emergency task response acceleration and low-priority task starvation prevention without changing the original business and hardware.