SecObserve
SecObserve copied to clipboard
Support ingestion of CSAF documents
It would be nice to have the possibility of ingesting CSAF documents from upstream vendors. I think this would support the whole idea of "Vulnerability Exploitability eXchange" and it's very useful to have context relevant information directly from the vendor when analyzing vulnerabilities. SecObserve already has different features that might be reused for this (support for different parsers, automatic creation of assessments, CSAF document creation).
Working on it, but may take a while
released with https://github.com/MaibornWolff/SecObserve/releases/tag/v1.15.0