Skip to content

This repo contains a dump of mappings of NVD's CPEs to purls (package URLs) derived from the VulnerableCode database. package urls created by using VulnerableCode's data. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ and nexB for https://www.aboutcode.org/ Chat at https://gitter.im/aboutcode-org/discuss

Notifications You must be signed in to change notification settings

nexB/vulnerablecode-purl2cpe

 
 

Repository files navigation

VulnerableCode purl2cpe

Data License stability-wip Gitter chat

VulnerableCode purl2cpe is a dataset mapping purls and CPEs using VulnerableCode data graph.

How it's made?

On a live VulnerableCode instance, run:

./manage.py purl2cpe <target-directory>

License

Copyright (c) nexB Inc. and others. All rights reserved.

VulnerableCode is a trademark of nexB Inc.

SPDX-License-Identifier: CC-BY-SA-4.0

VulnerableCode data is licensed collectively under CC-BY-SA-4.0.

See https://www.apache.org/licenses/LICENSE-2.0 for the license text.

See https://creativecommons.org/licenses/by-sa/4.0/legalcode for the license text.

See https://github.com/nexB/vulnerablecode for support. See https://github.com/nexB/vulnerablecode-purl2cpe for download.

See https://aboutcode.org for more information about nexB OSS projects.

About

This repo contains a dump of mappings of NVD's CPEs to purls (package URLs) derived from the VulnerableCode database. package urls created by using VulnerableCode's data. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ and nexB for https://www.aboutcode.org/ Chat at https://gitter.im/aboutcode-org/discuss

Topics

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published