vulnerability-lookup icon indicating copy to clipboard operation
vulnerability-lookup copied to clipboard

Add CERT Sante Feeder

Open rdussin opened this issue 1 month ago • 2 comments

Hi folks,

I'd really like to have the french Cert Sante feeder as you already have the Cert FR.

=> https://esante.gouv.fr/produits-services/cert-sante => https://cyberveille.esante.gouv.fr/ => https://cyberveille.esante.gouv.fr/alertes-et-vulnerabilites/rss.xml

Thank you very much !

rdussin avatar Nov 12 '25 08:11 rdussin

Thank you for the issue. Beside the RSS feed, do you have a machine parseable feed in JSON like ANSSI-FR ?

adulau avatar Nov 13 '25 17:11 adulau

Unfortunately no. We actually rely on the rss feed so we can't catch all the old cases.

rdussin avatar Nov 14 '25 08:11 rdussin

Circling back to this one, and it's going to be a bit tricky to implement (please correct me if I'm wrong):

  • No unique identifiers for the reports. Could use something like HPE-Aruba - CVE-2025-37155, or hpe-aruba-cve-2025-37155-2025-11-25 but it's really not great.
  • as @adulau said, no machine parseable feed, so besides the super limited content of the RSS feed, we cannot ingest the content of the report (ex. https://cyberveille.esante.gouv.fr/alertes/hpe-aruba-cve-2025-37155-2025-11-25) without parsing a full HTML page, again, not a fan.
  • The only way to link it (CVE) with another report is to parse the title of the report, but for some of them, it looks like that in the RSS: Golang/VMware - CVE-2025-22871 | modifié le 25-11-2025 or getting it from a parsed HTML document.

Rafiot avatar Nov 26 '25 12:11 Rafiot