更新: 109 个文件 - 2026-03-18 10:55:52
这个提交包含在:
@@ -174,6 +174,17 @@ systems:
|
||||
advisory_mode: module
|
||||
keywords: [drupal, module, sa-contrib]
|
||||
max_items: 50
|
||||
status: retired
|
||||
retired_reason: Drupal security index page became unstable for repeated HTML scraping; RSS + GHSA replacement is used for active monitoring.
|
||||
replacement_sources: [Drupal Security Advisories RSS, GHSA Drupal Core]
|
||||
- name: GHSA Drupal Core
|
||||
kind: ghsa-global
|
||||
ecosystem: composer
|
||||
confidence: ecosystem-authority
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; RSS and NVD remain active replacements.
|
||||
replacement_sources: [Drupal Security Advisories RSS, NVD Drupal]
|
||||
research_sources: []
|
||||
package_names:
|
||||
- ecosystem: composer
|
||||
@@ -325,6 +336,9 @@ systems:
|
||||
advisory_mode: core
|
||||
keywords: [mediawiki, security]
|
||||
max_items: 50
|
||||
status: retired
|
||||
retired_reason: MediaWiki security page is no longer reachable reliably from the collector path; NVD replacement remains active.
|
||||
replacement_sources: [NVD MediaWiki]
|
||||
- name: NVD MediaWiki
|
||||
kind: nvd-search
|
||||
keyword: MediaWiki
|
||||
@@ -355,6 +369,9 @@ systems:
|
||||
advisory_mode: core
|
||||
keywords: [moodle, security]
|
||||
max_items: 50
|
||||
status: retired
|
||||
retired_reason: Moodle security page returned repeated 403 responses from the collector path; NVD replacement remains active.
|
||||
replacement_sources: [NVD Moodle]
|
||||
- name: NVD Moodle
|
||||
kind: nvd-search
|
||||
keyword: Moodle
|
||||
@@ -385,13 +402,24 @@ systems:
|
||||
advisory_mode: core
|
||||
keywords: [discourse, security]
|
||||
max_items: 50
|
||||
- name: GitHub Discourse Advisories
|
||||
kind: html-links
|
||||
url: https://github.com/discourse/discourse/security/advisories
|
||||
status: retired
|
||||
retired_reason: Meta security category HTML changed and no longer provides stable scrape semantics for health checks.
|
||||
replacement_sources: [Discourse Release Notes RSS, GitHub Discourse Advisories]
|
||||
- name: Discourse Release Notes RSS
|
||||
kind: rss-feed
|
||||
url: https://meta.discourse.org/tag/release-notes.rss
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
keywords: [discourse]
|
||||
max_items: 50
|
||||
keywords: [discourse, security, cve]
|
||||
max_items: 60
|
||||
- name: GitHub Discourse Advisories
|
||||
kind: ghsa-global
|
||||
ecosystem: rubygems
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; Discourse release feed remains the active official source.
|
||||
replacement_sources: [Discourse Release Notes RSS]
|
||||
ecosystem_sources: []
|
||||
research_sources: []
|
||||
package_names:
|
||||
@@ -418,6 +446,24 @@ systems:
|
||||
advisory_mode: core
|
||||
keywords: [adobe commerce, magento, apsb]
|
||||
max_items: 60
|
||||
status: retired
|
||||
retired_reason: Original bulletin index probe was unstable under the old transport path; vendor index replacement uses explicit request policy and parser hints.
|
||||
replacement_sources: [Adobe Magento Security Index, NVD Adobe Commerce, GHSA Adobe Commerce]
|
||||
- name: Adobe Magento Security Index
|
||||
kind: vendor-index
|
||||
url: https://helpx.adobe.com/security/products/magento.html
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
keywords: [adobe commerce, magento, apsb, security]
|
||||
max_items: 60
|
||||
request_policy:
|
||||
user_agent: python-requests/2.31.0
|
||||
timeout_seconds: 45
|
||||
verify_tls: false
|
||||
http_version: "1.1"
|
||||
parser_hints:
|
||||
keywords: [adobe commerce, magento, apsb, security]
|
||||
include_url_patterns: [magento, security, APSB]
|
||||
- name: NVD Adobe Commerce
|
||||
kind: nvd-search
|
||||
keyword: Adobe Commerce
|
||||
@@ -425,13 +471,24 @@ systems:
|
||||
advisory_mode: core
|
||||
results_per_page: 50
|
||||
ecosystem_sources:
|
||||
- name: GHSA Adobe Commerce
|
||||
kind: ghsa-global
|
||||
ecosystem: composer
|
||||
confidence: ecosystem-authority
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; Adobe index and NVD remain active replacements.
|
||||
replacement_sources: [Adobe Magento Security Index, NVD Adobe Commerce]
|
||||
- name: Sansec Research
|
||||
kind: html-links
|
||||
kind: vendor-index
|
||||
url: https://sansec.io/research
|
||||
confidence: ecosystem-authority
|
||||
advisory_mode: extension
|
||||
keywords: [magento, adobe commerce]
|
||||
max_items: 50
|
||||
status: retired
|
||||
retired_reason: Research index is too slow for daily active monitoring; GHSA Adobe Commerce provides a stable machine-readable replacement.
|
||||
replacement_sources: [GHSA Adobe Commerce, Adobe Magento Security Index]
|
||||
research_sources: []
|
||||
package_names:
|
||||
- ecosystem: composer
|
||||
@@ -757,6 +814,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; GitHub React Advisories and OSV React remain active replacements.
|
||||
replacement_sources: [GitHub React Advisories, OSV React]
|
||||
- name: OSV React
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -795,6 +855,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; GitHub Next.js Advisories and OSV Next.js remain active replacements.
|
||||
replacement_sources: [GitHub Next.js Advisories, OSV Next.js]
|
||||
- name: OSV Next.js
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -831,6 +894,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; Vue Security and OSV Vue remain active replacements.
|
||||
replacement_sources: [Vue Security, OSV Vue]
|
||||
- name: OSV Vue
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -869,6 +935,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; Nuxt Security and OSV Nuxt remain active replacements.
|
||||
replacement_sources: [Nuxt Security, OSV Nuxt]
|
||||
- name: OSV Nuxt
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -905,6 +974,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; Vite Security and OSV Vite remain active replacements.
|
||||
replacement_sources: [Vite Security, OSV Vite]
|
||||
- name: OSV Vite
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -934,6 +1006,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; OSV Angular remains the active replacement source.
|
||||
replacement_sources: [OSV Angular]
|
||||
- name: OSV Angular
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -965,6 +1040,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; OSV SvelteKit remains the active replacement source.
|
||||
replacement_sources: [OSV SvelteKit]
|
||||
- name: OSV SvelteKit
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -994,6 +1072,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; OSV Astro remains the active replacement source.
|
||||
replacement_sources: [OSV Astro]
|
||||
- name: OSV Astro
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -1023,6 +1104,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; OSV Express remains the active replacement source.
|
||||
replacement_sources: [OSV Express]
|
||||
- name: OSV Express
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -1052,6 +1136,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; OSV NestJS remains the active replacement source.
|
||||
replacement_sources: [OSV NestJS]
|
||||
- name: OSV NestJS
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -1081,6 +1168,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; OSV Koa remains the active replacement source.
|
||||
replacement_sources: [OSV Koa]
|
||||
- name: OSV Koa
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -1110,6 +1200,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; OSV Fastify remains the active replacement source.
|
||||
replacement_sources: [OSV Fastify]
|
||||
- name: OSV Fastify
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -1139,6 +1232,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; OSV Hapi remains the active replacement source.
|
||||
replacement_sources: [OSV Hapi]
|
||||
- name: OSV Hapi
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -1198,6 +1294,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; OSV Undici remains the active replacement source.
|
||||
replacement_sources: [OSV Undici]
|
||||
- name: OSV Undici
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -1227,6 +1326,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; OSV webpack remains the active replacement source.
|
||||
replacement_sources: [OSV webpack]
|
||||
- name: OSV webpack
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -1256,6 +1358,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; OSV esbuild remains the active replacement source.
|
||||
replacement_sources: [OSV esbuild]
|
||||
- name: OSV esbuild
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -1292,6 +1397,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GHSA API requests are rate-limited in daily monitoring; Spring Security Advisories remains the active replacement source.
|
||||
replacement_sources: [Spring Security Advisories]
|
||||
ecosystem_sources: []
|
||||
research_sources: []
|
||||
package_names:
|
||||
@@ -1326,6 +1434,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GitHub advisory API is quota-limited; Spring official security page remains the active source.
|
||||
replacement_sources: [Spring Security Advisories]
|
||||
ecosystem_sources: []
|
||||
research_sources: []
|
||||
package_names:
|
||||
@@ -1358,6 +1469,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GitHub advisory API is quota-limited; Spring official security page remains the active source.
|
||||
replacement_sources: [Spring Security Advisories]
|
||||
ecosystem_sources: []
|
||||
research_sources: []
|
||||
package_names:
|
||||
@@ -1383,6 +1497,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GitHub advisory API is quota-limited; OSV Laravel remains the active machine-readable source.
|
||||
replacement_sources: [OSV Laravel]
|
||||
- name: OSV Laravel
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -1412,6 +1529,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GitHub advisory API is quota-limited; OSV Symfony remains the active machine-readable source.
|
||||
replacement_sources: [OSV Symfony]
|
||||
- name: OSV Symfony
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -1444,6 +1564,29 @@ systems:
|
||||
advisory_mode: core
|
||||
keywords: [django]
|
||||
max_items: 60
|
||||
status: retired
|
||||
retired_reason: Official security tag feed became unstable; use official weblog index and release archive instead.
|
||||
replacement_sources: [Django Security Weblog, Django Security Releases Archive]
|
||||
- name: Django Security Weblog
|
||||
kind: vendor-index
|
||||
url: https://www.djangoproject.com/weblog/
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
keywords: [django, security, release]
|
||||
max_items: 60
|
||||
parser_hints:
|
||||
keywords: [django, security, release]
|
||||
include_url_patterns: [/weblog/]
|
||||
- name: Django Security Releases Archive
|
||||
kind: vendor-index
|
||||
url: https://docs.djangoproject.com/en/dev/releases/security/
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
keywords: [django, security]
|
||||
max_items: 40
|
||||
parser_hints:
|
||||
keywords: [django, security]
|
||||
include_url_patterns: [/releases/security/]
|
||||
- name: OSV Django
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -1477,6 +1620,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GitHub advisory API is quota-limited; OSV Flask remains the active machine-readable source.
|
||||
replacement_sources: [OSV Flask]
|
||||
ecosystem_sources: []
|
||||
research_sources: []
|
||||
package_names:
|
||||
@@ -1506,6 +1652,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GitHub advisory API is quota-limited; OSV Werkzeug remains the active machine-readable source.
|
||||
replacement_sources: [OSV Werkzeug]
|
||||
ecosystem_sources: []
|
||||
research_sources: []
|
||||
package_names:
|
||||
@@ -1531,6 +1680,9 @@ systems:
|
||||
name: GitHub Global Advisories
|
||||
confidence: official
|
||||
advisory_mode: core
|
||||
status: retired
|
||||
retired_reason: Unauthenticated GitHub advisory API is quota-limited; OSV Rails remains the active machine-readable source.
|
||||
replacement_sources: [OSV Rails]
|
||||
- name: OSV Rails
|
||||
kind: osv-batch
|
||||
confidence: official
|
||||
@@ -1798,6 +1950,16 @@ systems:
|
||||
advisory_mode: server
|
||||
keywords: [haproxy, security]
|
||||
max_items: 50
|
||||
status: retired
|
||||
retired_reason: Legacy haproxy.org security page no longer yields stable scrape results for monitoring.
|
||||
replacement_sources: [HAProxy Blog Feed]
|
||||
- name: HAProxy Blog Feed
|
||||
kind: rss-feed
|
||||
url: https://www.haproxy.com/feed/
|
||||
confidence: official
|
||||
advisory_mode: server
|
||||
keywords: [haproxy, security, cve]
|
||||
max_items: 40
|
||||
- name: NVD HAProxy
|
||||
kind: nvd-search
|
||||
keyword: HAProxy
|
||||
@@ -2041,6 +2203,9 @@ systems:
|
||||
advisory_mode: core
|
||||
keywords: [mattermost]
|
||||
max_items: 50
|
||||
status: retired
|
||||
retired_reason: Mattermost security updates page returned repeated 403 responses from the collector path; NVD replacement remains active.
|
||||
replacement_sources: [NVD Mattermost]
|
||||
- name: NVD Mattermost
|
||||
kind: nvd-search
|
||||
keyword: Mattermost
|
||||
|
||||
在新工单中引用
屏蔽一个用户