owasp-dep-scan / dep-scan

OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.
https://owasp.org/www-project-dep-scan/
MIT License
1.02k stars 98 forks source link

Handle zero scores from npm with vdb 5.6.3 #258

Closed prabhu closed 8 months ago

prabhu commented 8 months ago

Fixes #257 Fixes #259