dejacode icon indicating copy to clipboard operation
dejacode copied to clipboard

Automate open source license compliance and ensure software supply chain integrity

Results 136 dejacode issues
Sort by recently updated
recently updated
newest added

**Is your enhancement request related to a problem? Please describe.** DejaCode allows to load packages associated with a product from an SBOM. A modern SBOM that fulfills requirements such as...

enhancement
design needed
PackageSet

**Describe the bug** On a self-hosted instance of DejaCode, it appears that the current main branch of DejaCode does not scan individual packages after loading the SBOM. This feature seems...

bug
enhancement
design needed

Export the results of the vulnerabilities triage and processing as CSAF VEX document

vulnerabilities
design needed

Export the results of the vulnerabilities triage and processing as CycloneDX VEX document https://cyclonedx.org/capabilities/vex/ https://github.com/CycloneDX/bom-examples/tree/master/VEX

enhancement
vulnerabilities
design needed
integration
HighPriority
risk

Introduce VEX Support to DejaCode - enhance data model to support a Product VEX List - provide Export capabilities to product VEX documents that comply with industry-recognized formats Here are...

enhancement
help wanted
vulnerabilities
design needed
integration
major

We should createc a base Vulnerability application management in DejaCode with these features: - [ ] CRAVEX: Create a scheduler for vulnerability lookups that will lookup in VCIO - [...

vulnerabilities
design needed
integration
major
HighPriority

![image](https://github.com/nexB/dejacode/assets/29133904/79168345-13b3-4517-9cd5-72eea99372d4) ![Screenshot from 2024-04-29 20-46-55](https://github.com/nexB/dejacode/assets/29133904/20169dda-29b8-4377-b553-57e2035f6c33) ![Screenshot from 2024-05-04 23-16-35](https://github.com/nexB/dejacode/assets/29133904/bae18d71-0d13-49a4-9623-be5fc172cb4d)

When working with hundred of Inventory Items you need the capability to search and filter by Item name. Some common use cases are: - Search/filter by package type - Search/filter...

enhancement
design needed
UI
MedPriority

Create models and design API to integrate external tool's reachability analysis results inform vulnerability ranking

vulnerabilities
design needed

Re-rank the exploitability scores given the org and local app/product context and policies

vulnerabilities
design needed