Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

The National Vulnerability Database is breaking PHP Version Audit updates #205

Open
lightswitch05 opened this issue Nov 22, 2024 · 0 comments

Comments

@lightswitch05
Copy link
Owner

lightswitch05 commented Nov 22, 2024

This tool is no longer able to pull CVE info from the National Vulnerability Database. This is breaking auto updates. It seems there is a newer version of the API that is used here - which supports API keys. I've been able to obtain an API key, but I'm getting 503 error on the most basic API requests (example: GET https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2020-7060).

Hopefully whatever is going on with the NVD will be resolved in a few days, or this tool will start breaking as the data becomes stale. This also affects Node Version Audit, see lightswitch05/node-version-audit#25

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant