bombon icon indicating copy to clipboard operation
bombon copied to clipboard

How to match pkg/nix/* PURLs to Vulnerabilities?

Open blitz opened this issue 5 months ago • 4 comments

Bombon generates Package URLs, such as these:

pkg:nix/[email protected]

As far as I can see, there is no CVE data source for these PURLs. Is there any advice on how to handle these for vulnerability analysis?

blitz avatar Sep 16 '24 07:09 blitz