The CVE Binary Tool helps you determine if your system includes known vulnerabilities. You can scan binaries for over 200 common, vulnerable components (openssl, libpng, libxml2, expat and others), or if you know the components used, you can get a list of known vulnerabilities associated with an SBOM or a list of components and versions.
@inosmeet Thanks, its working as expected though i was wondering should we keep the purl in productinfo as string or purl object, i guess object is better so :+1:
cc @mastersans