-
Notifications
You must be signed in to change notification settings - Fork 201
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Add support for CWE #651
Comments
Can we use a library like this https://github.com/Julian-Nash/cwe to get a CWE by ID and add another JSON field in the model? |
CWE could be used for categorization of vulnerabilities. Later on, we might be able to find a mapping between To implement CWE (categorization) support a system similar to currently implemented ScoringSystem could be used. See:
(via: https://github.com/nexB/vulnerablecode/wiki/WeeklyMeetings#meeting-on-tuesday-2022-04-26-at-1000-utc) |
I think we have a compressed CSV file containing the fields of the desired Weaknesses related to CWE VIEW: Software Development. |
Reference: aboutcode-org#651 Signed-off-by: Ziad <[email protected]>
The main #782 is now merged Closing now. Thanks! |
We decided early to keep the data set we track as minimal... but adding CWE would be a great addition. This can be a fairly involved issue since many importers may need to be updated.
The text was updated successfully, but these errors were encountered: