AppThreat / vulnerability-db

Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.0, purl, and vers.
MIT License
94 stars 22 forks source link

sanity tests for vdb publish #186

Open prabhu opened 2 months ago

prabhu commented 2 months ago

Inspired by the Crowdstrike event, where a file containing only zeros got pushed to all users. We need some tests to prevent an empty or corrupted SQLite database from getting published to the VDB repo. We currently have a metadata file that has some counts. But best to have a range of queries based on some types, namespaces, and names.