Match components against
OSV.dev
(PackageURL) and
NVD
(CPE)
OSV
NVD
NVD options
· bundled index· live lookup
NVD source
Use a pre-indexed local NVD snapshot (fast) or query NVD live (slower).
This product uses data from the
NVD
but is not endorsed or certified by the NVD. CVE is a registered trademark of MITRE. See
the
NVD Terms of Use.
No additional vulnerabilities were found online for this SBOM's components.
Referenced files in this SBOM
Link the source files CVEs name to Files in this SBOM (inferred by path, shown as dashed
edges on the graph). Uses a bundled CVE index when available (offline, all CVEs), otherwise fetches records from cve.org.
Severity
Source
KEV
A VEX statement clears for
. Any files listed below are linked for reference only.
Jump to
Summary
Description
Risk assessment
Known exploited
Source: this SBOM's risk assessment
Loading CVE details…
Files referenced by this CVE
in
Files are matched to this SBOM by path from the CVE record, not declared by
the SBOM itself. A file tagged “Not affected” or “Fixed” is cleared by a VEX
statement: it's linked here for reference, not as an open issue.
Functions referenced by this CVE
Modules referenced by this CVE
Source: CVE Program · cve.org
Online match
Not endorsed or certified by the NVD.
VEX assessments
No VEX status recorded for this vulnerability.
No vulnerabilities match your filters
No known vulnerabilities were found in the SBOM or online.
This SBOM carries no vulnerability data.
Use “Check public databases” above to look up known CVEs by PackageURL and CPE.