v0.0.31
What's Changed
GET /index/vde
Return Type:
Changed response : 200 OK
OK
-
Changed content type :
application/json-
Changed property
data(array)Changed items (object):
-
Added property
csaf_json(object)-
Property
document(object)Document contains metadata about the CSAF document itself.
https://docs.oasis-open.org/csaf/csaf/v2.0/os/csaf-v2.0-os.html#321-document-property
-
Property
category(string) -
Property
csaf_version(string) -
Property
distribution(object) -
Property
lang(string) -
Property
notes(array)used by ncsc
Items (object):
-
Property
audience(string) -
Property
category(string) -
Property
text(string) -
Property
title(string)
-
-
Property
publisher(object)-
Property
category(string) -
Property
contact_details(string) -
Property
issuing_authority(string) -
Property
name(string) -
Property
namespace(string)
-
-
Property
references(array)Items (object):
-
Property
category(string) -
Property
summary(string) -
Property
url(string)
-
-
Property
title(string)Aggregate severity is a vehicle that is provided by the document producer to convey the urgency and
criticality with which the one or more vulnerabilities reported should be addressed. -
Property
tracking(object)-
Property
current_release_date(string) -
Property
id(string) -
Property
initial_release_date(string) -
Property
revision_history(array)Items (object):
-
Property
date(string) -
Property
number(string) -
Property
summary(string)
-
-
Property
status(string) -
Property
version(string)should match last 'number' in []RevisionHistory
-
-
-
Property
notes(array)Notes holds notes associated with the whole document.
https://docs.oasis-open.org/csaf/csaf/v2.0/os/csaf-v2.0-os.html#3217-document-property---notesItems (object):
-
Property
product_tree(object)ProductTree contains information about the product tree (branches only).
https://docs.oasis-open.org/csaf/csaf/v2.0/os/csaf-v2.0-os.html#322-product-tree-property
-
Property
branches(array)Items (object):
-
Property
branches(array) -
Property
category(string) -
Property
name(string) -
Property
product(object)-
Property
name(string) -
Property
product_id(string) -
Property
product_identification_helper(object)
-
-
Property
relationships(array)Items (object):
-
Property
category(string) -
Property
full_product_name(object) -
Property
product_reference(string) -
Property
relates_to_product_reference(string)
-
-
-
Property
category(string) -
Property
name(string) -
Property
product(object) -
Property
relationships(array)
-
-
Property
vulnerabilities(array)Vulnerabilities contains information about the vulnerabilities,
(i.e. CVEs), associated threats, and product status.https://docs.oasis-open.org/csaf/csaf/v2.0/os/csaf-v2.0-os.html#323-vulnerabilities-property
Items (object):
-
Property
cve(string)MITRE standard Common Vulnerabilities and Exposures (CVE) tracking number for the vulnerability.
https://docs.oasis-open.org/csaf/csaf/v2.0/os/csaf-v2.0-os.html#3232-vulnerabilities-property---cve
-
Property
cwe(object)-
Property
id(string) -
Property
name(string)
-
-
Property
flags(array)Machine readable flags for products related to vulnerability
Items (object):
-
Property
date(string) -
Property
group_ids(array)Items (string):
-
Property
label(string) -
Property
product_ids(array)
-
-
Property
ids(array)List of IDs represents a list of unique labels or tracking IDs for the vulnerability (if such information exists).
https://docs.oasis-open.org/csaf/csaf/v2.0/os/csaf-v2.0-os.html#3236-vulnerabilities-property---ids
Items (object):
-
Property
system_name(string) -
Property
text(string)
-
-
Property
notes(array)Notes holds notes associated with the Vulnerability object.
https://docs.oasis-open.org/csaf/csaf/v2.0/os/csaf-v2.0-os.html#3238-vulnerabilities-property---notesItems (object):
-
Property
product_status(object)Provide details on the status of the referenced product related to the vulnerability.
-
Property
references(array)Vulnerability references holds a list of references associated with this vulnerability item.
Items (object):
-
Property
release_date(string) -
Property
remediations(array)Provide details of remediations associated with a Vulnerability
Items (object):
-
Property
category(string) -
Property
date(string) -
Property
details(string) -
Property
entitlements(array) -
Property
group_ids(array) -
Property
product_ids(array) -
Property
restart_required(object)-
Property
category(string) -
Property
details(string)
-
-
-
Property
scores(array)Scores holds the scores associated with the Vulnerability object.
https://docs.oasis-open.org/csaf/csaf/v2.0/os/csaf-v2.0-os.html#32313-vulnerabilities-property---scores
Currently only CVSS v3 is supported.Items (object):
-
Property
cvss_v2(object)-
Property
accessComplexity(string) -
Property
accessVector(string) -
Property
authentication(string) -
Property
availabilityImpact(string) -
Property
availabilityRequirement(string) -
Property
baseScore(number) -
Property
collateralDamagePotential(string) -
Property
confidentialityImpact(string) -
Property
confidentialityRequirement(string) -
Property
environmentalScore(number) -
Property
exploitability(string) -
Property
integrityImpact(string) -
Property
integrityRequirement(string) -
Property
remediationLevel(string) -
Property
reportConfidence(string) -
Property
targetDistribution(string) -
Property
temporalScore(number)
-
-
Property
cvss_v3(object)-
Property
attackComplexity(string) -
Property
attackVector(string) -
Property
availabilityImpact(string) -
Property
baseScore(number) -
Property
baseSeverity(string) -
Property
confidentialityImpact(string) -
Property
integrityImpact(string) -
Property
privilegesRequired(string) -
Property
scope(string) -
Property
userInteraction(string) -
Property
vectorString(string) -
Property
version(string)
-
-
Property
products(array)
-
-
Property
threats(array)Provide details of threats associated with a vulnerability.
Items (object):
-
Property
category(string) -
Property
details(string) -
Property
product_ids(array)
-
-
-
-
-
GET /index/vulncheck-canaries
Parameters:
Added: src_country in query
Country code in ISO-3166 format
Added: dst_country in query
Country code in ISO-3166 format
Deleted: alias in query
Specify a vulnerability alias to search with.
Deleted: iava in query
Specify an IAVA ID to search with.
Deleted: jvndb in query
Specify a JVNDB ID to search with.
Deleted: ilvn in query
Specify an ILVN ID to search with.
Deleted: threat_actor in query
Specify a threat actor name to search with.
Deleted: mitre_id in query
Specify a MITRE ID to search with.
Deleted: misp_id in query
Specify a MISP ID to search with.
Deleted: ransomware in query
Specify a ransomeware family name to search with.
Deleted: botnet in query
Specify a botnet name to search with.
GET /index/vulncheck-canaries-10d
Parameters:
Added: src_country in query
Country code in ISO-3166 format
Added: dst_country in query
Country code in ISO-3166 format
Deleted: alias in query
Specify a vulnerability alias to search with.
Deleted: iava in query
Specify an IAVA ID to search with.
Deleted: jvndb in query
Specify a JVNDB ID to search with.
Deleted: ilvn in query
Specify an ILVN ID to search with.
Deleted: threat_actor in query
Specify a threat actor name to search with.
Deleted: mitre_id in query
Specify a MITRE ID to search with.
Deleted: misp_id in query
Specify a MISP ID to search with.
Deleted: ransomware in query
Specify a ransomeware family name to search with.
Deleted: botnet in query
Specify a botnet name to search with.
GET /index/vulncheck-canaries-30d
Parameters:
Added: src_country in query
Country code in ISO-3166 format
Added: dst_country in query
Country code in ISO-3166 format
Deleted: alias in query
Specify a vulnerability alias to search with.
Deleted: iava in query
Specify an IAVA ID to search with.
Deleted: jvndb in query
Specify a JVNDB ID to search with.
Deleted: ilvn in query
Specify an ILVN ID to search with.
Deleted: threat_actor in query
Specify a threat actor name to search with.
Deleted: mitre_id in query
Specify a MITRE ID to search with.
Deleted: misp_id in query
Specify a MISP ID to search with.
Deleted: ransomware in query
Specify a ransomeware family name to search with.
Deleted: botnet in query
Specify a botnet name to search with.
GET /index/vulncheck-canaries-3d
Parameters:
Added: src_country in query
Country code in ISO-3166 format
Added: dst_country in query
Country code in ISO-3166 format
Deleted: alias in query
Specify a vulnerability alias to search with.
Deleted: iava in query
Specify an IAVA ID to search with.
Deleted: jvndb in query
Specify a JVNDB ID to search with.
Deleted: ilvn in query
Specify an ILVN ID to search with.
Deleted: threat_actor in query
Specify a threat actor name to search with.
Deleted: mitre_id in query
Specify a MITRE ID to search with.
Deleted: misp_id in query
Specify a MISP ID to search with.
Deleted: ransomware in query
Specify a ransomeware family name to search with.
Deleted: botnet in query
Specify a botnet name to search with.
GET /index/vulncheck-canaries-90d
Parameters:
Added: src_country in query
Country code in ISO-3166 format
Added: dst_country in query
Country code in ISO-3166 format
Deleted: alias in query
Specify a vulnerability alias to search with.
Deleted: iava in query
Specify an IAVA ID to search with.
Deleted: jvndb in query
Specify a JVNDB ID to search with.
Deleted: ilvn in query
Specify an ILVN ID to search with.
Deleted: threat_actor in query
Specify a threat actor name to search with.
Deleted: mitre_id in query
Specify a MITRE ID to search with.
Deleted: misp_id in query
Specify a MISP ID to search with.
Deleted: ransomware in query
Specify a ransomeware family name to search with.
Deleted: botnet in query
Specify a botnet name to search with.
GET /index/cisa-csaf
Return Type:
Changed response : 200 OK
OK
-
Changed content type :
application/json-
Changed property
data(array)Changed items (object):
-
Changed property
csaf_json(object)-
Changed property
product_tree(object)ProductTree contains information about the product tree (branches only).
https://docs.oasis-open.org/csaf/csaf/v2.0/os/csaf-v2.0-os.html#322-product-tree-property
-
Changed property
product(object)- Changed property
product_identification_helper(object)
- Changed property
-
-
-
-
GET /index/ncsc
Return Type:
Changed response : 200 OK
OK
-
Changed content type :
application/json-
Changed property
data(array)Changed items (object):
-
Changed property
csaf(object)-
Changed property
product_tree(object)ProductTree contains information about the product tree (branches only).
https://docs.oasis-open.org/csaf/csaf/v2.0/os/csaf-v2.0-os.html#322-product-tree-property
-
Changed property
product(object)- Changed property
product_identification_helper(object)
- Changed property
-
-
-
-
GET /index/ncsc-cves
Return Type:
Changed response : 200 OK
OK
-
Changed content type :
application/json-
Changed property
data(array)Changed items (object):
-
Changed property
csaf(object)-
Changed property
product_tree(object)ProductTree contains information about the product tree (branches only).
https://docs.oasis-open.org/csaf/csaf/v2.0/os/csaf-v2.0-os.html#322-product-tree-property
-
Changed property
product(object)- Changed property
product_identification_helper(object)
- Changed property
-
-
-
-
GET /index/oracle-cpu-csaf
Return Type:
Changed response : 200 OK
OK
-
Changed content type :
application/json-
Changed property
data(array)Changed items (object):
-
Changed property
csaf(object)-
Changed property
product_tree(object)ProductTree contains information about the product tree (branches only).
https://docs.oasis-open.org/csaf/csaf/v2.0/os/csaf-v2.0-os.html#322-product-tree-property
-
Changed property
product(object)- Changed property
product_identification_helper(object)
- Changed property
-
-
-
-
GET /index/redhat-cves
Return Type:
Changed response : 200 OK
OK
-
Changed content type :
application/json-
Changed property
data(array)Changed items (object):
-
Changed property
csaf(object)-
Changed property
product_tree(object)ProductTree contains information about the product tree (branches only).
https://docs.oasis-open.org/csaf/csaf/v2.0/os/csaf-v2.0-os.html#322-product-tree-property
-
Changed property
product(object)- Changed property
product_identification_helper(object)
- Changed property
-
-
-
-
GET /index/mitre-cvelist-v5
Return Type:
Changed response : 200 OK
OK
-
Changed content type :
application/json-
Changed property
data(array)Changed items (object):
-
Changed property
mitre_ref(object)-
Changed property
containers(object)-
Changed property
adp(array)Changed items (object):
-
Changed property
affected(array)Changed items (object):
-
Added property
packageURL(string) -
Added property
repo(string) -
Deleted property
repos(string)
-
-
Changed property
metrics(array)OK
Changed items (object):
-
Added property
scenarios(array)Items (object):
-
Property
lang(string) -
Property
value(string)
-
-
Changed property
cvssV4_0(object)-
Added property
automatable(string) -
Added property
recovery(string) -
Added property
safety(string) -
Deleted property
Automatable(string) -
Deleted property
Recovery(string) -
Deleted property
Safety(string)
-
-
-
-
-
-
-
GET /index/vulncheck-cvelist-v5
Return Type:
Changed response : 200 OK
OK
-
Changed content type :
application/json-
Changed property
data(array)Changed items (object):
-
Changed property
mitre_ref(object)-
Changed property
containers(object)-
Changed property
adp(array)Changed items (object):
-
Changed property
affected(array)Changed items (object):
-
Added property
packageURL(string) -
Added property
repo(string) -
Deleted property
repos(string)
-
-
Changed property
metrics(array)OK
Changed items (object):
-
Added property
scenarios(array) -
Changed property
cvssV4_0(object)-
Added property
automatable(string) -
Added property
recovery(string) -
Added property
safety(string) -
Deleted property
Automatable(string) -
Deleted property
Recovery(string) -
Deleted property
Safety(string)
-
-
-
-
-
-
-
GET /index/vulnrichment
Return Type:
Changed response : 200 OK
OK
-
Changed content type :
application/json-
Changed property
data(array)Changed items (object):
-
Changed property
mitre_ref(object)-
Changed property
containers(object)-
Changed property
cna(object)-
Changed property
metrics(array)Changed items (object):
-
Added property
scenarios(array) -
Changed property
cvssV4_0(object)-
Added property
automatable(string) -
Added property
recovery(string) -
Added property
safety(string) -
Deleted property
Automatable(string) -
Deleted property
Recovery(string) -
Deleted property
Safety(string)
-
-
-
-
Changed property
adp(array)Changed items (object):
-
Changed property
affected(array)Changed items (object):
-
Added property
packageURL(string) -
Added property
repo(string) -
Deleted property
repos(string)
-
-
-
-
-
-