Ecosyste.ms: Issues
An open API service for providing issue and pull request metadata for open source projects.
GitHub / CycloneDX/cdxgen issues and pull requests
#695 - Support for .ABOUT yaml file
Issue -
State: open - Opened by prabhu about 1 year ago
Labels: help wanted, Consider Funding
#694 - Automatic Image Pull for Private Docker Registry in cdxgen
Issue -
State: open - Opened by pooja0805 about 1 year ago
- 4 comments
#693 - cdxgen command throughs error when running the scan on a very large project folder
Issue -
State: open - Opened by visagansanthanam-unisys about 1 year ago
- 3 comments
#692 - fix: correctly set projectType option
Pull Request -
State: closed - Opened by setchy about 1 year ago
Labels: bug
#691 - feat: add Dockerfile support
Pull Request -
State: closed - Opened by setchy about 1 year ago
- 5 comments
Labels: enhancement
#690 - Follow CycloneDX 1.4 spec for SPDX license expressions for npm.
Pull Request -
State: open - Opened by ansonallard about 1 year ago
- 7 comments
#689 - Support for linking an existing bom with externalReferences
Issue -
State: open - Opened by prabhu about 1 year ago
Labels: enhancement, help wanted, Consider Funding
#688 - cpp improvements
Pull Request -
State: closed - Opened by prabhu about 1 year ago
Labels: help wanted
#687 - [java] --deep mode for mono repos is slow
Issue -
State: closed - Opened by prabhu about 1 year ago
#686 - [deno] repotests have started failing
Issue -
State: closed - Opened by prabhu about 1 year ago
Labels: bug, help wanted
#685 - Mapping to scvs
Issue -
State: open - Opened by prabhu about 1 year ago
- 3 comments
#684 - Force version argument to be a string
Pull Request -
State: closed - Opened by prabhu about 1 year ago
#683 - author information passed by the --author parameter is overwritten by DependencyTrack tool
Issue -
State: open - Opened by visagansanthanam-unisys about 1 year ago
- 1 comment
#682 - Fix fetching licenses for jvm packages
Pull Request -
State: closed - Opened by puchta about 1 year ago
- 6 comments
#681 - fix required-only,add girBranch to server
Pull Request -
State: closed - Opened by avgkoster about 1 year ago
- 2 comments
#680 - Migrate from Buffer to Uint8Array
Issue -
State: open - Opened by prabhu about 1 year ago
#679 - cdxgen does not follow CycloneDX 1.4 spec for SPDX license expressions
Issue -
State: closed - Opened by ansonallard about 1 year ago
- 3 comments
#678 - Feature/transitive require
Pull Request -
State: closed - Opened by avgkoster about 1 year ago
- 3 comments
#677 - [Python] Track git referenced packages
Issue -
State: open - Opened by prabhu about 1 year ago
#676 - Feature/evinse python
Pull Request -
State: closed - Opened by prabhu about 1 year ago
#674 - JavaScript analyzer does not output evidence if a transitive of direct is called
Issue -
State: closed - Opened by avgkoster about 1 year ago
- 8 comments
#673 - cdxgen command when run with --project-name and --project-version instead of --project-id parameter not working as intended
Issue -
State: closed - Opened by visagansanthanam-unisys about 1 year ago
- 11 comments
Labels: bug
#672 - Improved fetching license information for npm packages
Pull Request -
State: closed - Opened by puchta about 1 year ago
- 1 comment
#671 - cdxgen fails to fetch license information for some projects even though they are present in npm metadata
Issue -
State: closed - Opened by puchta about 1 year ago
- 1 comment
#670 - Using latest version when there is also an entry that includes the version
Issue -
State: open - Opened by cerrussell about 1 year ago
- 4 comments
#669 - Output for pnpm project is unexpected and invalid
Issue -
State: closed - Opened by rysearle about 1 year ago
- 3 comments
#668 - Deducing license information for PyPI packages from classifiers (if not stated explicite)
Pull Request -
State: closed - Opened by puchta about 1 year ago
#667 - Some Boms are not created in multiProject mode: docker-compose.yml is not analyzed
Issue -
State: open - Opened by marob about 1 year ago
- 1 comment
#666 - *requirements*.txt false positive
Issue -
State: open - Opened by marob about 1 year ago
#665 - cdxgen fails to fetch license information for some projects even though they are present in pypi
Issue -
State: open - Opened by puchta about 1 year ago
- 4 comments
#664 - Generated license sometimes not valid according to BOM schema
Issue -
State: open - Opened by marob about 1 year ago
- 3 comments
#663 - Fixes #480
Pull Request -
State: closed - Opened by marob about 1 year ago
#662 - Fixes #661
Pull Request -
State: closed - Opened by marob about 1 year ago
- 2 comments
#661 - Incorrect "author" when in object format inside package.json
Issue -
State: closed - Opened by marob about 1 year ago
#660 - JS reachables
Pull Request -
State: closed - Opened by prabhu about 1 year ago
- 1 comment
#659 - fix typo
Pull Request -
State: closed - Opened by iamahens about 1 year ago
- 5 comments
#657 - Support Dockerfile
Issue -
State: closed - Opened by setchy about 1 year ago
- 3 comments
#656 - Reachable slices + Bug fixes
Pull Request -
State: open - Opened by prabhu about 1 year ago
- 1 comment
#655 - Set asciiGraphWidth to 400 for all subprojects in case of a multiproject sbt
Pull Request -
State: closed - Opened by puchta about 1 year ago
#654 - Need option to provide custom authors and metadata in the SBOM file
Issue -
State: closed - Opened by visagansanthanam-unisys about 1 year ago
- 7 comments
#653 - Add support for PyPi index as environment variable
Issue -
State: open - Opened by cryptator about 1 year ago
#652 - Improved detection for standalone jar files
Pull Request -
State: closed - Opened by Nikemare about 1 year ago
- 1 comment
#651 - asciiGraphWidth does not work well in multiproject builds
Issue -
State: closed - Opened by puchta about 1 year ago
- 4 comments
#650 - Migrate away from using scope attribute
Issue -
State: open - Opened by prabhu about 1 year ago
#649 - gradle dependencies task fails on large gradle projects
Issue -
State: open - Opened by MCDong about 1 year ago
- 3 comments
#648 - sbom insights feature
Issue -
State: open - Opened by prabhu about 1 year ago
#647 - Docker image+tag scan failing
Issue -
State: open - Opened by setchy about 1 year ago
- 12 comments
#646 - Extend NuGet querying
Pull Request -
State: closed - Opened by robaliias about 1 year ago
#645 - Paket.lock - include patch versions when omitted by Paket
Pull Request -
State: closed - Opened by robaliias about 1 year ago
- 2 comments
#644 - Perform bom-ref decode during creation at source
Pull Request -
State: closed - Opened by prabhu about 1 year ago
#643 - Java Dependencies from a JAR File inside a Docker Image are not extracted
Issue -
State: closed - Opened by sherifkayad about 1 year ago
- 5 comments
#642 - refactor: remove dependency track spec downgrade
Pull Request -
State: closed - Opened by setchy about 1 year ago
Labels: refactor
#641 - Component not listed in Dependencies
Issue -
State: closed - Opened by emcfins about 1 year ago
- 3 comments
#640 - Dotnet dependency tree not preserved without type flag
Issue -
State: open - Opened by robaliias about 1 year ago
- 2 comments
#639 - Add dependency tree for paket.lock files
Pull Request -
State: closed - Opened by robaliias about 1 year ago
- 1 comment
#638 - Fix dotnet project.assets dependency tree
Pull Request -
State: closed - Opened by robaliias about 1 year ago
#637 - cdxgen server: Slicing was not successful. (Failed generating BOM for Python)
Issue -
State: closed - Opened by gbennett-squarespace about 1 year ago
- 8 comments
#635 - Scan failes with docker
Issue -
State: closed - Opened by BoBeR182 about 1 year ago
- 6 comments
#634 - Filters and config files support
Pull Request -
State: closed - Opened by prabhu about 1 year ago
#633 - Trim dotnet sbom by tracking resolved versions
Pull Request -
State: closed - Opened by prabhu about 1 year ago
- 4 comments
#632 - Bugfix/dotnet project assets parsing
Pull Request -
State: closed - Opened by robaliias about 1 year ago
#631 - dotnet - project.assets.json parsing creates extra package versions in the BOM
Issue -
State: closed - Opened by robaliias about 1 year ago
- 2 comments
#630 - Support for specifying the purpose/use case for BOM
Issue -
State: closed - Opened by prabhu about 1 year ago
#629 - Fallback to docker sbom command
Issue -
State: open - Opened by prabhu about 1 year ago
#626 - Enable deep mode for poetry
Pull Request -
State: closed - Opened by prabhu about 1 year ago
#625 - missing components on dotnet based project
Issue -
State: closed - Opened by visagansanthanam-unisys about 1 year ago
- 10 comments
Labels: enhancement, Consider Funding
#624 - feat: sort components
Pull Request -
State: open - Opened by cerrussell about 1 year ago
- 1 comment
#623 - Document the list of available types supported by cdxgen
Issue -
State: closed - Opened by prabhu about 1 year ago
- 4 comments
Labels: documentation
#622 - docs: update BoM references
Pull Request -
State: closed - Opened by setchy about 1 year ago
Labels: documentation
#621 - Switching to java 21
Issue -
State: closed - Opened by prabhu about 1 year ago
- 2 comments
Labels: good first issue
#620 - Publish cdxgen on deno
Issue -
State: open - Opened by prabhu about 1 year ago
#619 - cdxgen-deno broken: "Could not find npm package 'connect'"
Issue -
State: closed - Opened by darkvertex about 1 year ago
- 6 comments
Labels: bug
#618 - Dependency graph for go mod + Python poetry tree from lock file
Pull Request -
State: closed - Opened by prabhu about 1 year ago
- 15 comments
#617 - Bug fix. Reuse usages slices file for python parsedeps invocation
Pull Request -
State: closed - Opened by prabhu about 1 year ago
#616 - container image wasn't released for 9.8.7
Issue -
State: closed - Opened by prabhu about 1 year ago
#615 - CDXGEN command does not honor usage of --usages-slices-file
Issue -
State: closed - Opened by rozeru1125 about 1 year ago
- 4 comments
#614 - Error Upon Generating SBOM for Python
Issue -
State: closed - Opened by rozeru1125 about 1 year ago
- 10 comments
#613 - Fixes issues with trimComponents
Pull Request -
State: closed - Opened by BaseCrusher about 1 year ago
- 4 comments
#612 - feat: safely log git url
Pull Request -
State: closed - Opened by setchy about 1 year ago
- 2 comments
Labels: enhancement
#611 - Add support for paket.lock files
Pull Request -
State: closed - Opened by robaliias about 1 year ago
- 4 comments
#610 - Update references of SBoM to SBOM
Pull Request -
State: closed - Opened by setchy about 1 year ago
Labels: refactor
#609 - SBOM generated for requirements-dev.txt even with `--required-only` flag
Issue -
State: open - Opened by marcosanchotene about 1 year ago
- 19 comments
#608 - Use BOM consistently
Issue -
State: closed - Opened by prabhu about 1 year ago
- 1 comment
Labels: good first issue
#607 - build: add eslint prettier plugin
Pull Request -
State: closed - Opened by setchy about 1 year ago
- 2 comments
#606 - build: add eslint prettier plugin
Pull Request -
State: closed - Opened by setchy about 1 year ago
#605 - feat(server) add simple health endpoint
Pull Request -
State: closed - Opened by setchy about 1 year ago
- 1 comment
Labels: enhancement
#604 - Feature/javans improvements
Pull Request -
State: closed - Opened by prabhu about 1 year ago
- 10 comments
#603 - Upgrade to packageurl-js 1.1.1
Issue -
State: open - Opened by prabhu about 1 year ago
- 1 comment
#602 - Support for conda
Issue -
State: open - Opened by prabhu about 1 year ago
#599 - Update readme and docs regarding optional plugins
Issue -
State: open - Opened by prabhu about 1 year ago
Labels: documentation, good first issue
#598 - Update metadata.tools with info about all tools used in creating the sbom
Issue -
State: open - Opened by prabhu about 1 year ago
Labels: enhancement
#597 - Docs on benchmarking and comparing results
Issue -
State: open - Opened by prabhu about 1 year ago
- 4 comments
Labels: documentation
#596 - Support for filtering
Issue -
State: closed - Opened by prabhu about 1 year ago
Labels: enhancement
#595 - Integration with 3rd party sca platforms
Issue -
State: open - Opened by prabhu about 1 year ago
#595 - Integration with 3rd party sca platforms
Issue -
State: open - Opened by prabhu about 1 year ago
- 2 comments
#594 - Add specVersion query param to support 1.4 version via API call
Pull Request -
State: closed - Opened by kakumanivrn about 1 year ago
- 5 comments
#593 - gradle copy deps init script to speed up collectGradleDependencies
Issue -
State: open - Opened by prabhu about 1 year ago
Labels: good first issue, help wanted
#592 - cdxgen server api enhancements
Issue -
State: open - Opened by prabhu about 1 year ago
Labels: enhancement, good first issue
#591 - What if cdxgen container image bundles depscan
Issue -
State: closed - Opened by prabhu about 1 year ago
- 1 comment
#590 - fix: remove purl decoding
Pull Request -
State: closed - Opened by misl-smlz about 1 year ago
- 12 comments