go-cve-dictionary
go-cve-dictionary copied to clipboard
[WIP]import cve-dates from RedHat Security
https://www.redhat.com/security/data/metrics/ https://www.redhat.com/security/data/metrics/cve_dates.txt
CVE to date, CVE to severity, CVE to CVSS mapping
This data source maps CVE names to the dates the issues were first known to the public. This helps generate statistics based on "days of risk". This data source also captures the severity of the issues and how we found out about them (dates and sources). Although the dates may come from third-parties, the severity classifications are given by Red Hat Product Security and are specific to Red Hat, and will vary for other distributions and vendors. This file is updated here every one or two weeks (or by request, by contacting [email protected]):