Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / SAP/project-kb issues and pull requests

#325 - SEC_KEYWORD_IN_LINKED_ISSUE does not work as expected

Issue - State: closed - Opened by copernico almost 2 years ago - 1 comment
Labels: bug, component/prospector, assuremoss

#324 - Merge NLP modifications, NVD failure fallback

Pull Request - State: closed - Opened by sacca97 almost 2 years ago

#323 - update gitignore

Pull Request - State: closed - Opened by copernico almost 2 years ago

#322 - Low reliability of filename extraction from the advisory

Issue - State: closed - Opened by sacca97 almost 2 years ago - 2 comments
Labels: bug, component/prospector, assuremoss

#321 - chore(deps): bump joblib from 1.0.1 to 1.2.0 in /prospector

Pull Request - State: closed - Opened by dependabot[bot] about 2 years ago - 1 comment
Labels: dependencies, python

#320 - new rule: the referenced JIRA ticket contains 'security-related' keywords

Issue - State: closed - Opened by copernico about 2 years ago - 3 comments
Labels: component/prospector, assuremoss, planned

#319 - Create new "main" branch (the new "master")

Issue - State: closed - Opened by copernico about 2 years ago - 1 comment
Labels: component/prospector, assuremoss

#318 - Candidate prospector

Pull Request - State: closed - Opened by sacca97 about 2 years ago - 1 comment

#317 - Update GH action for prospector

Pull Request - State: closed - Opened by copernico about 2 years ago

#316 - Switch to pip, add postgres init, reworked docker backend

Pull Request - State: closed - Opened by sacca97 about 2 years ago

#315 - Prospector assuremoss

Pull Request - State: closed - Opened by sacca97 about 2 years ago
Labels: component/prospector, assuremoss

#314 - Prospector assuremoss

Pull Request - State: closed - Opened by sacca97 about 2 years ago
Labels: component/prospector, assuremoss

#313 - Add HTML report select and export, silenced flake8 errors

Pull Request - State: closed - Opened by sacca97 about 2 years ago - 1 comment
Labels: component/prospector, assuremoss

#312 - adds select and export to html report, silence flake8 warnings

Pull Request - State: closed - Opened by sacca97 about 2 years ago
Labels: component/prospector, assuremoss

#311 - Implement third-party website lookup for commit references in prospector

Issue - State: closed - Opened by sacca97 about 2 years ago - 3 comments
Labels: component/prospector, assuremoss

#310 - Export selected commits from html report to yaml statement

Issue - State: closed - Opened by sacca97 about 2 years ago
Labels: component/prospector, assuremoss, improvement

#309 - Prospector assuremoss

Pull Request - State: closed - Opened by sacca97 about 2 years ago - 1 comment
Labels: component/prospector, assuremoss

#308 - chore(deps): bump numpy from 1.19.4 to 1.22.0 in /prospector

Pull Request - State: closed - Opened by dependabot[bot] over 2 years ago - 2 comments
Labels: dependencies, python

#307 - Create GUI for Prospector

Issue - State: open - Opened by copernico over 2 years ago
Labels: new feature, component/prospector, assuremoss

#306 - chore(deps): bump numpy from 1.19.4 to 1.21.0 in /prospector

Pull Request - State: closed - Opened by dependabot[bot] over 2 years ago - 1 comment
Labels: dependencies

#305 - chore(deps): bump fastapi from 0.65.1 to 0.65.2 in /prospector

Pull Request - State: closed - Opened by dependabot[bot] over 2 years ago - 2 comments
Labels: dependencies

#304 - chore(deps): bump jinja2 from 2.11.2 to 2.11.3 in /prospector

Pull Request - State: closed - Opened by dependabot[bot] over 2 years ago - 2 comments
Labels: dependencies

#303 - Fixing GH action (pytest not found)

Pull Request - State: closed - Opened by copernico over 2 years ago

#302 - README update with FEA internal review recommendations

Pull Request - State: closed - Opened by chicxurug over 2 years ago - 2 comments
Labels: component/prospector, assuremoss

#301 - Update python.yml

Pull Request - State: closed - Opened by copernico almost 3 years ago

#300 - refactor prospector client

Pull Request - State: closed - Opened by copernico almost 3 years ago

#299 - Commit ids to retrieve vulnerable code

Issue - State: closed - Opened by spr593 almost 3 years ago - 8 comments
Labels: component/vuln-data

#298 - refactoring logic for providing high level user-friendly output

Pull Request - State: closed - Opened by geryxyz almost 3 years ago

#297 - Consider to extract parts of `prospector( )` method into separate methods

Issue - State: closed - Opened by geryxyz almost 3 years ago - 1 comment
Labels: component/prospector, assuremoss, improvement

#296 - Create a central function to produce user-friendly output (distinctinct from diagnostic logs)

Issue - State: closed - Opened by copernico almost 3 years ago - 4 comments
Labels: component/prospector, assuremoss, improvement

#295 - Error 422 corrected - issue #283

Pull Request - State: closed - Opened by amilankovich-slab almost 3 years ago

#294 - Version to tag interactivity

Pull Request - State: closed - Opened by amilankovich-slab almost 3 years ago
Labels: component/prospector, assuremoss

#293 - condense logging

Pull Request - State: closed - Opened by geryxyz almost 3 years ago - 3 comments

#292 - if the backend only return a list of Nones, it is still reported as preprocessed commit

Issue - State: closed - Opened by geryxyz almost 3 years ago - 4 comments
Labels: bug, component/prospector, assuremoss

#291 - REF_JIRA_ISSUE should be disabled by default #288

Pull Request - State: closed - Opened by copernico almost 3 years ago

#290 - add option `--fixed-tag` and `--fixed-version`

Issue - State: open - Opened by copernico almost 3 years ago - 3 comments
Labels: component/prospector, assuremoss, improvement

#289 - interactive mode: have the user validate the mapping of version to tag

Issue - State: closed - Opened by copernico almost 3 years ago - 1 comment
Labels: component/prospector, assuremoss, improvement

#288 - REF_JIRA_ISSUE should be disabled by default

Issue - State: closed - Opened by copernico almost 3 years ago - 1 comment
Labels: component/prospector, assuremoss, improvement

#287 - regular expression for rule REF_JIRA_ISSUE is wrong

Issue - State: closed - Opened by copernico almost 3 years ago - 1 comment
Labels: bug, component/prospector, assuremoss

#286 - make default logging less verbose and more compact

Issue - State: closed - Opened by copernico almost 3 years ago - 1 comment
Labels: component/prospector, assuremoss, improvement

#285 - detect if user-supplied tag-(or version-) interval could be narrowed down

Issue - State: open - Opened by copernico almost 3 years ago - 1 comment
Labels: component/prospector, assuremoss, improvement

#284 - when mapping version to tag, ask user confirmation when mapping is low-confidence

Issue - State: open - Opened by copernico almost 3 years ago - 3 comments
Labels: component/prospector, assuremoss, improvement

#283 - Investigate "Saving to backend completed (status code: 422)" warning

Issue - State: closed - Opened by amilankovich-slab almost 3 years ago - 2 comments

#276 - implement rule to match issues in commit msg and advisory

Pull Request - State: closed - Opened by copernico almost 3 years ago - 1 comment

#271 - Automatically extract keywords from the advisory

Issue - State: closed - Opened by copernico about 3 years ago - 1 comment
Labels: component/prospector, assuremoss, improvement

#264 - Unable to get candidates for CVE-2020-13952

Issue - State: closed - Opened by copernico about 3 years ago - 3 comments
Labels: bug, component/prospector, assuremoss

#263 - Improve products gazetteer

Issue - State: closed - Opened by copernico about 3 years ago - 1 comment
Labels: component/prospector, assuremoss, improvement

#260 - Analysing the advisory record using spacy NER

Pull Request - State: closed - Opened by copernico about 3 years ago - 3 comments
Labels: component/prospector, assuremoss

#259 - Use NER in advisory record analysis

Issue - State: closed - Opened by copernico about 3 years ago - 4 comments
Labels: component/prospector, assuremoss, improvement

#258 - Pass options to rule functions

Issue - State: closed - Opened by copernico about 3 years ago - 1 comment
Labels: missing info, component/prospector, assuremoss, improvement

#255 - new rule: commit msg refers to bug-tracking issue that mentions the vulnerability ID at hand

Issue - State: closed - Opened by copernico about 3 years ago - 2 comments
Labels: high-priority, component/prospector, assuremoss

#247 - introduce low level cache to speed up the computation

Issue - State: closed - Opened by geryxyz about 3 years ago - 2 comments
Labels: component/prospector, assuremoss, optimization

#245 - Change default behaviour: client should abort if there is no backend

Issue - State: closed - Opened by copernico about 3 years ago - 2 comments
Labels: component/prospector, assuremoss, improvement

#227 - Automatically determine repository url from advisory text

Issue - State: open - Opened by copernico about 3 years ago
Labels: component/prospector, assuremoss, improvement

#218 - Improve rule to detect if a candidate changes files that are relevant to the advisory

Pull Request - State: closed - Opened by copernico about 3 years ago - 3 comments
Labels: component/prospector, assuremoss

#216 - It is impossible to specify an open-ended version interval

Issue - State: open - Opened by copernico about 3 years ago - 1 comment
Labels: bug, component/prospector, assuremoss, planned

#215 - enable setting loglevel for backend via env variable

Issue - State: closed - Opened by copernico about 3 years ago - 2 comments
Labels: component/prospector, assuremoss, improvement

#214 - Implement essential rules

Issue - State: closed - Opened by copernico about 3 years ago - 2 comments
Labels: high-priority, component/prospector, assuremoss

#207 - Validate Prospector on existing vulnerability data

Issue - State: closed - Opened by copernico about 3 years ago - 1 comment
Labels: high-priority, component/prospector, assuremoss

#207 - Validate Prospector on existing vulnerability data

Issue - State: closed - Opened by copernico about 3 years ago - 1 comment
Labels: high-priority, component/prospector, assuremoss

#147 - Add feature to indicate if a commit has a "twin"

Issue - State: closed - Opened by copernico over 3 years ago - 2 comments
Labels: component/prospector, assuremoss

#135 - Lexical similarity

Issue - State: closed - Opened by Szamos96 over 3 years ago - 1 comment
Labels: component/prospector, assuremoss

#119 - Basic web GUI for Prospector

Issue - State: closed - Opened by copernico over 3 years ago - 1 comment
Labels: new feature, component/prospector, assuremoss

#107 - [WIP] Merging prospector-assuremoss back to master

Pull Request - State: closed - Opened by copernico over 3 years ago - 1 comment
Labels: component/prospector, assuremoss

#81 - (WIP) Simplify management of sources

Pull Request - State: closed - Opened by copernico over 3 years ago
Labels: component/kaybee

#80 - [kaybee] [WORK-IN-PROGRESS] Implement interactive merge

Pull Request - State: closed - Opened by copernico over 3 years ago
Labels: component/kaybee

#40 - [import] implement extraction of fix-commits from NVD feeds

Issue - State: open - Opened by copernico almost 4 years ago - 2 comments
Labels: new feature, component/kaybee