bombon
bombon copied to clipboard
How to match pkg/nix/* PURLs to Vulnerabilities?
Bombon generates Package URLs, such as these:
pkg:nix/[email protected]
As far as I can see, there is no CVE data source for these PURLs. Is there any advice on how to handle these for vulnerability analysis?