In general, for Secunia advisories, the "Vendor Patched" status is applied if a direct-offered solution within the product’s same version is available without performing any additional manual steps beyond applying an update.
Example
Let’s say Adobe Flash Player versions 24.0.0.221 and prior are reported as affected, but the vendor's solution is in version 25.0.0.127. Version 25.0.0.127 is considered an upgrade in this context (and not an update) as you must move from Adobe Flash Player 24.x product to the next one, Adobe Flash Player 25.x. In this case, the Secunia advisory is marked "Unpatched" in the 24.x context.