aboutcode-org / aboutcode-org/vulnerablecode

Collect apache project's machine readable advisories.

Open
#314 0 comments 0 reactions 0 assignees View on GitHub
Data collection
Dominant language
Python
Stars
702
Forks
328
Avg merge
3d 8h
Merged PRs (30d)
3

Description

In any case we want to avoid parsing human readable advisories, so to break https://github.com/nexB/vulnerablecode/issues/100 in smaller manageable parts , we should always parse machine readable advisories if possible.

Apache projects maintain machine readable security advisories at a project level. See for example

https://github.com/apache/syncope/blob/fa82b8266c0c664c49d010d397a9ffb3f6ab4555/src/site/xdoc/security.xml
https://github.com/apache/ofbiz-site/blob/8a3e9fb778858257fd1b930e51059f5a61d2457a/template/page/security.tpl.php
https://github.com/search?q=org%3Aapache+cve&type=code

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.