/osv-schema

Open Source Vulnerability schema.

Primary LanguagePythonApache License 2.0Apache-2.0

Open Source Vulnerability Schema

This is the repository for the Open Source Vulnerability schema, which is currently exported by:

Together, these include vulnerabilities from:

  • AlmaLinux
  • Alpine
  • Android
  • crates.io
  • Debian GNU/Linux
  • GitHub Actions
  • Go
  • Hex
  • Linux kernel
  • Maven
  • npm
  • NuGet
  • OSS-Fuzz
  • Packagist
  • Pub
  • PyPI
  • Rocky Linux
  • RubyGems

These vulnerabilites are aggregated by https://osv.dev.

Reference tooling (e.g. converters) can be found in the tools/ directory

The current version of spec is rendered here.