vulnerablecode icon indicating copy to clipboard operation
vulnerablecode copied to clipboard

Support CVE JSON 5.0

Open armijnhemel opened this issue 3 years ago • 3 comments

Currently VulnerableCode only supports CVE JSON 4.0 but soonish reports will be coming in CVE JSON 5.0 format, which will be a richer format with (possibly) more data:

https://www.cve.org/Media/News/item/news/2022/01/11/Changes-Coming-to-CVE-Record https://www.cve.org/Media/News/item/blog/2022/01/18/CVE-List-Download-Formats-Are

I don't know when NVD starts publishing feeds in CVE JSON 5.0 format, but it might be good to be prepared.

armijnhemel avatar Nov 23 '22 12:11 armijnhemel

@armijnhemel Thanks... this is timely as we are working on migrating the Apache httpd advisories to the new internal framework and they are using the NVD v4 We need to add v5 indeed.

pombredanne avatar Nov 24 '22 08:11 pombredanne

https://github.com/CVEProject/cvelistV5/blob/main/cves/2023/1xxx/CVE-2023-1002.json it's an example of the format

TG1999 avatar Feb 06 '24 16:02 TG1999

Check the GH repo and API data is similar or not

TG1999 avatar Feb 06 '24 16:02 TG1999