Week #2: Adding Vulnerabilities to the security tab

b31ngd3v
Published: 06/15/2023

What did I do this week?

This week, I added feature to the GitHub Action which will help to add vulnerabilities to the security tab, currently it generates report with cve-bin-tool and extract the vulnerabilities and generates a sarif file.

What is coming up next?

In the next phase, I'll add support for language scanners.

Did I get stuck anywhere?

Yes, there was a problem with the tool, where it was not providing the root path of some vulnerable product in the html report, so I made a pull request addressing this issue.

DJDT

Versions

Time

Settings from gsoc.settings

Headers

Request

SQL queries from 1 connection

Static files (2312 found, 3 used)

Templates (11 rendered)

Cache calls from 1 backend

Signals

Log messages