-
Please consider broadening the language used to use terms like suppliers (aligning with NTIA), organizations, or be expllicit like MITRE has in the CNA program to say "vendors and projects".
-
... let us make a real version 2.0! There are tools that can go from XML to JSON schema and back again (mostly) so hopefully we bring more to the table with the new major version than just offering J…
-
**What happened**:
I scanned container known security vulnerability of library commons-collections version 3.1. It should report critical CVE-2017-15708 by grype. I have used twistlock tool for secur…
-
### Background
The [OSV schema](https://tinyurl.com/vuln-json) has been [adopted by Go, OSV, Python, Rust, and UVI](https://github.com/google/osv#current-data-sources) to describe vulnerabilities i…