photon-os-advisories/README.md

1.8 KiB

VMWare Photon Advisories

Background

What is this project?

The OSV.dev expects advisories to be published in the OSV format. This repository republishes the advisories in the OSV format, and syncs them against the GSD Database

TODO:

  • Delete advisories that are deleted upstream (Experimental)
  • Automatic Update
  • Automatic Sync (to GSD)
  • Schema: Provide credits
  • Schema: Provide impacted packages
  • Schema: Provide all impacted packages, with version number that fixes the issue. (Available in all but 50-60 advisories)
  • Schema: Provide summary/details/severity
  • Schema: Provide SHA256 hashes under database_specific

Contributing

Contributions are welcome! Since the advisories are automatically generated, please don't make manual updates to the JSON advisory files. Instead update the generation script: generate.py.

License

Licensed under the MIT License. See LICENSE file for details.