One of the most common challenges enterprises face in information security is dealing with third-party vulnerabilities. Such flaws can reflect poorly on the security posture of your environment and leave your business at risk. Many people reviewing vulnerability scans or security assessment reports often wont know that you are unable to resolve certain issues directly. There are often security controls you can put in place to reduce or eliminate the risks, such as an intrusion prevention system (IPS) or Web application firewall (WAF) rules.”]
Source: https://securityintelligence.com/when-vendor-security-vulnerabilities-become-your-own/

