We should display the vulnerable version range(s) in the UI and report it in the API reported as `vers` syntax. There are likely some gremlins in the data model that may prohibit to do so easily just now, so it needs some design