Skip to content

Conversation

achrinza
Copy link
Member

@achrinza achrinza commented Mar 11, 2022

Todo:

  • Add GitLab format

    • Last 3 advisories
    • Mapping validation
  • Add additional CSAF validation

    • product_tree hierarchy
      • CPE
      • PURL
      • Product name
      • Product version
        • SemVer range test
        • Syntax
    • last_affected, first_affected, known_affected, etc.
  • Add additional OSV mapping validation

    • PURL

Signed-off-by: Rifa Achrinza [email protected]

@achrinza achrinza force-pushed the feat/batch-update branch from 85adc3c to bb15c0e Compare March 11, 2022 15:36
Signed-off-by: Rifa Achrinza <[email protected]>
@achrinza achrinza force-pushed the feat/batch-update branch from bb15c0e to fb0240e Compare March 18, 2022 11:54
@achrinza achrinza self-assigned this May 10, 2022
@achrinza
Copy link
Member Author

achrinza commented May 13, 2022

Another specification we may want to sync up with is the Node.js Security WG Vulnerability Database: https://github.com/nodejs/security-wg/blob/main/processes/vuln_db.md

See: #23

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant