psf / advisory-databaseLinks
This is a repository of vulnerability advisories for projects in scope for the Python Software Foundation CVE Numbering Authority (CNA)
☆38Updated last week
Alternatives and similar repositories for advisory-database
Users that are interested in advisory-database are comparing it to the libraries listed below
Sorting:
- A Sigstore client written in Python☆305Updated last week
- A GitHub Action for sigstore-python☆63Updated this week
- 🕵️ File browser for distributions on PyPI☆110Updated last month
- Data about packages and maintainers on PyPI☆129Updated 2 months ago
- Update GitHub Actions version pins in GitHub workflow files.☆38Updated 5 months ago
- Software Bill-of-Materials documents for Python packages☆44Updated 10 months ago
- Canonical source for classifiers on PyPI.☆178Updated 3 weeks ago
- Packaging improvements that could be funded☆56Updated 2 years ago
- A GitHub Action for pip-audit☆81Updated last week
- a GitHub action to install (pre-release) pythons from deadsnakes☆58Updated 2 weeks ago
- MVP for updated PEP 543 proposal☆13Updated 3 weeks ago
- Advisory database for Python packages published on pypi.org☆313Updated 2 weeks ago
- Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase…☆85Updated last month
- Check for stylistic and formal issues in .rst and .py files included in the documentation☆96Updated last month
- A Python library to parse, validate and create SPDX documents.☆231Updated 5 months ago
- Scripts for making (C)Python releases☆58Updated last week
- A parser for Python dependency files☆65Updated last year
- a mostly correct pip requirements parsing library☆21Updated last year
- Validation library for simple check on `pyproject.toml`☆195Updated last week
- Fetches security vulnerabilities and creates pip-constraints based on them.☆12Updated 11 months ago
- An unofficial, importable pip API☆118Updated 2 weeks ago
- Creation & manipulation of PyPI tokens☆12Updated this week
- ☆47Updated 3 weeks ago
- Resolve abstract dependencies into concrete ones☆159Updated last month
- A low-level library for installing from a Python wheel distribution.☆140Updated last week
- Verify certificates using OS trust stores☆212Updated last month
- A low-level library for calling build-backends in `pyproject.toml`-based project☆127Updated 6 months ago
- A tool to generate a SBOM (Software Bill of Materials) for an installed Python module☆37Updated 2 months ago
- Dlint is a tool for encouraging best coding practices and helping ensure Python code is secure.☆174Updated last month
- 🐍🍒⛏ Utility script for backporting/cherry-picking CPython changes from master into one of the maintenance branches.☆61Updated 3 weeks ago