Граф коммитов

4 Коммитов

Автор SHA1 Сообщение Дата
Tatiana Bradley 82175fd7a3 data: fix whitespace in all YAML reports
Change-Id: Ie2503c1c8b0bc714dbe8c66a27de7d448c77dce8
Reviewed-on: https://go-review.googlesource.com/c/vulndb/+/499657
Run-TryBot: Tatiana Bradley <tatianabradley@google.com>
Reviewed-by: Julie Qiu <julieqiu@google.com>
TryBot-Result: Gopher Robot <gobot@golang.org>
2023-06-01 16:17:25 +00:00
Tatiana Bradley f1409b0461 data: add lint check for ID and add ID to all YAML reports
Adds the ID field to all YAML reports and adds a lint check to enforce
that all reports have the correct value for the field. Also adds a
step to "vulnreport fix" to fix the ID if needed.

Change-Id: I51f4654e127528e1dbbfcb9c59da3658ad52098b
Reviewed-on: https://go-review.googlesource.com/c/vulndb/+/498281
Run-TryBot: Tatiana Bradley <tatianabradley@google.com>
TryBot-Result: Gopher Robot <gobot@golang.org>
Reviewed-by: Damien Neil <dneil@google.com>
2023-05-31 21:30:23 +00:00
Maceo Thompson 881b1e909f internal/report, cmd/vulnreport, data/excluded: require excluded reports to have module information.
Modify report.Lint() so that it requires all excluded report (aside from Not Go Code) to also have module information. Also modifies createExcluded to be more robust against malformed and unreachable module paths in github issue titles.

This (in addition to go/dev/cl/446868) allows us to add some module information to every report. Ideally, this will allow us to check if anyone is importing the modules mentioned in the excluded reports for our metrics.

Change-Id: I783aea978760a70a0cccd30ad454d1fadfb85997
Reviewed-on: https://go-review.googlesource.com/c/vulndb/+/448837
Run-TryBot: Maceo Thompson <maceothompson@google.com>
TryBot-Result: Gopher Robot <gobot@golang.org>
Reviewed-by: Tatiana Bradley <tatiana@golang.org>
2022-11-16 18:04:35 +00:00
Damien Neil 65b142be91 data/excluded: add GO-2022-0961.yaml for CVE-2022-36051
Fixes golang/vulndb#961

Change-Id: Ib831dc59dd00c0222e2d6ec5160e33d604f23d93
Reviewed-on: https://go-review.googlesource.com/c/vulndb/+/428074
TryBot-Result: Gopher Robot <gobot@golang.org>
Run-TryBot: Damien Neil <dneil@google.com>
Reviewed-by: Julie Qiu <julieqiu@google.com>
2022-09-02 20:32:23 +00:00