Other advisory databases that feed into OSV have CI jobs to handle some of the manual work with submitting vulnerabilities, like auto-assigning IDs. For example, see https://github.com/pypa/advisory-database/blob/main/.github/workflows/automation.yaml
Ensure the modified times are always updated would also be a nice improvement.