Skip to content

Create a provider for Haskell security advisories #1039

@westonsteimel

Description

@westonsteimel

What would you like to be added:

Add a provider to pull advisory data from https://github.com/haskell/security-advisories (OSV formatted in https://github.com/haskell/security-advisories/tree/generated/osv-export)

Why is this needed:

I believe there is already a package cataloger in syft, this should allow for more accurate vulnerability matches in grype

Additional context:

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    Status

    No status

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions