Sometimes you get 'Vulnerable Apps.' when you do a vulnerability scan, so you do the recommended fix. When you redo the scan the vulnerability is still listed (even though there is no longer a vuln.) . I know the ultimate solution to these problems involve the app. vendor & KL so may take a while to sort out, but for people who aren't that technically savvy it can be a worry.
How about a short term workaround when the above happens? - even if its just a line in the 'Vuln. App.' description that gets put in by the next database update that says '"If this vuln. is still here after you've done the fix, don't worry you may safely exclude it".
Cya
Jetta