Should be a CVE?

Looking at the following, it appears that a CVE was issued for the 
potential that someone might upgrade software to a vulnerable version, 
which has another CVE. I don't think this should qualify as a CVE, 
given the actual vulnerability already has one. 


Should this CVE be rejected?


