BSI-Bund / secvisogram
Secvisogram is a web tool for creating and editing security advisories in the CSAF 2.0 format
☆19Updated this week
Alternatives and similar repositories for secvisogram:
Users that are interested in secvisogram are comparing it to the libraries listed below
- OASIS TC Open Repository: A GitHub repository for management of non-normative information about the work of the CSAF Technical Committee,…☆20Updated last month
- OASIS CSAF TC: Supporting version control for Work Product artifacts developed by members of TC, including prose specifications and secon…☆155Updated this week
- Stakeholder-Specific Vulnerability Categorization☆135Updated this week
- Posture Attribute Collection and Evaluation☆24Updated last year
- Tools to download or provide CSAF (Common Security Advisory Framework) documents.☆42Updated this week
- Secvisogram is a web tool for creating and editing security advisories in the CSAF 2.0 format☆35Updated this week
- apt2sbom python package generates SPDX or CycloneDX files from Ubuntu APT and Python packaging information☆22Updated 2 years ago
- ☆101Updated 3 months ago
- ☆47Updated this week
- A CVRF CSAF Converter, taking care about OASIS specification.☆10Updated last week
- Low-effort reachability analysis for third-party code vulnerabilities.☆20Updated last year
- Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data☆57Updated 9 months ago
- This project aims to standardize the representation and management of EOL and EOS product information across the industry.☆25Updated 10 months ago
- ☆18Updated 8 months ago
- Scripts to import OSCAL example content into the Neo4J graph database☆27Updated last year
- OASIS TC Open Repository: CSAF Parser tool for parsing and checking the syntax of the Common Vulnerability Reporting Framework (CVRF) con…☆23Updated 2 years ago
- A place to systematically store software bill of materials (SBOM) documents.☆44Updated last year
- The model for the information captured in SPDX version 3 standard.☆73Updated this week
- A dataset of software supply chain compromises. Please help us maintain it!☆127Updated 2 years ago
- VINCE is the Vulnerability Information and Coordination Environment developed and used by the CERT Coordination Center to improve coordin…☆59Updated last month
- A standard API specification for exchanging supply chain artifacts and intelligence☆67Updated last month
- PURL to CPE Relationship mapping project.☆82Updated this week
- Produce an Open Source Vulnerability JSON file based on information in an SPDX document☆62Updated 7 months ago
- Feed parsing for language package manager updates☆76Updated last month
- A Python library and command line interface for CVE Services.☆61Updated last month
- Firepit - STIX Columnar Storage☆16Updated 7 months ago
- OCA-wide documentation shared by all sub-projects and repositories☆33Updated 2 months ago
- OPENSSF SECURITY INSIGHTS: Repository for development of the draft standard, where requests for modification should be made via Github Is…☆56Updated this week
- Kestrel Jupyter Notebook Kernel☆9Updated last year
- Utility that provides an API platform for validating, querying and managing BOM data☆98Updated 2 months ago