Jerry Gamblin

Results 12 issues of Jerry Gamblin

Can you please include a copy of the kibana dashboard in the next release?

I am not a java developer but was hoping someone could build a button/function to hide all resource groups that have 0 resources? It would make the data a lot...

Someone filed [CVE-2020-29590](https://nvd.nist.gov/vuln/detail/CVE-2020-29590) against your docker image. After looking at your dockerfile I do not think it is vulnerable and should be disputed. [Here is a blog I wrote on...

While testing a new nodejs security tool I tested your repo because it was the first result for "nodejs security github" while looking for a repo to test. Here are...

# 🐛 Summary # I am noticing a lot of dashes (-) in the generated CPE strings. An example is is in [CVE-2024-1347](https://github.com/cisagov/vulnrichment/blob/5140a8995b4641d58fa9162d3694bd4d9ef681ed/2024/1xxx/CVE-2024-1347.json#L164) with the CPE of `"cpe": "cpe:2.3:a:gitlab:gitlab:-:*:*:*:-:*:*:*"`. According...

bug
cpe

The daily download zip file just contains a zip file named cves.zip, which seems unnecessary.

bug

The daily download zip file has a double extension of .zip.zip. The file works it just makes it clunky to work with.

bug

Update `config.py` to the new EPSS URL at https://epss.empiricalsecurity.com/epss_scores-current.csv.gz, https://epss.cyentia.com/epss_scores-current.csv.gz is now dead

Move EPSS URL From Cyentia to Empirical Security. https://epss.empiricalsecurity.com/epss_scores-current.csv.gz. ~~The old URL no longer works.~~ The URL is back but it is now a redirect and should be updated.

awaiting CI

Hello CVE Project Team, I am consuming the cvelistV5 JSON data and have noticed that **multiple different timestamp formats** are being used across the records. This inconsistency makes reliable, programmatic...