Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Anchore Enterprise Vuln parser #11552

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Closed
Sopuru opened this issue Jan 13, 2025 · 5 comments
Closed

Anchore Enterprise Vuln parser #11552

Sopuru opened this issue Jan 13, 2025 · 5 comments

Comments

@Sopuru
Copy link
Contributor

Sopuru commented Jan 13, 2025

Anchore Enterprise Vulnerability
While working on integrating Anchore vulnerability data with DefectDojo, I encountered some issues with the current Anchore Engine Parser. It appears that the parser expects an outdated data structure that no longer aligns with the data provided by Anchore Enterprise and Anchore Engine itself is outdated and replaced by Anchore Enterprise. There is a need for the Anchore Enterprise vulnerability data parser in DefectDojo.
https://anchore.com/

Sample File
Sample vuln report attached.
Vulnerability_Report_2025-01-13T10_09_59.971Z.json

@pUrGe12
Copy link
Contributor

pUrGe12 commented Feb 9, 2025

Is this sample file inclusive of all parameters that can be present in the output?

@Sopuru
Copy link
Contributor Author

Sopuru commented Feb 9, 2025

@pUrGe12 Yes it is. It includes all outputs

@pUrGe12
Copy link
Contributor

pUrGe12 commented Feb 10, 2025

Does this match with what you were expecting? @Sopuru

@Sopuru
Copy link
Contributor Author

Sopuru commented Feb 10, 2025

Thank you @pUrGe12 Yes, it does. Thank you for the update. I had a PR on it. Once #11777 scales through, i am very happy to close mine. Thank you!

manuel-sommer added a commit to manuel-sommer/django-DefectDojo that referenced this issue Mar 15, 2025
mtesauro pushed a commit that referenced this issue Mar 20, 2025
* πŸŽ‰ fix parser anchore engine new report format #11552

* first shot

* fixes

* advance unittests
@manuel-sommer
Copy link
Contributor

This can be closed @mtesauro

@Sopuru Sopuru closed this as completed Mar 21, 2025
iago-r pushed a commit to iago-r/django-DefectDojo that referenced this issue Mar 27, 2025
… (DefectDojo#12020)

* πŸŽ‰ fix parser anchore engine new report format DefectDojo#11552

* first shot

* fixes

* advance unittests
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

3 participants