vulnerablecode
vulnerablecode copied to clipboard
fedcode-next: Collect fix commits from pre-existing datasets
We should focus on the database of manually reviewed fix commits and avoid automated fix commits.
OSV fix commits:
- #767
Databases Requiring Review:
- project-kb:
- https://github.com/SAP/project-kb/tree/vulnerability-data
- https://github.com/SAP/project-kb/tree/main/MSR2019
- vulncode-db
- https://github.com/aboutcode-org/vulnerablecode/issues/118
- linux_kernel_cves
- https://github.com/aboutcode-org/vulnerablecode/issues/564
- Morefixes:
- https://github.com/JafarAkhondali/Morefixes
-
MSR_20_Code_vulnerability_CSV_Dataset https://github.com/ZeoVan/MSR_20_Code_vulnerability_CSV_Dataset
-
GNU Libc fix commits
- https://github.com/aboutcode-org/vulnerablecode/issues/1362
- Android fixes from
- https://github.com/quarkslab/aosp_dataset
related issue
- https://github.com/aboutcode-org/vulnerablecode/issues/1697