Retire remaining active NVD sources

这个提交包含在:
hao
2026-03-18 20:38:36 -07:00
父节点 eb0e5d587a
当前提交 b0398f30b5
修改 83 个文件,包含 5344 行新增693 行删除

查看文件

@@ -87,6 +87,18 @@
<h1>Retired Sources &amp; Replacement Map</h1>
<div class="meta">工作台内置镜像页:退役源、退役原因和 replacement_sources 真值。</div>
<pre>[
{
&quot;system_id&quot;: &quot;adminer&quot;,
&quot;display_name&quot;: &quot;Adminer&quot;,
&quot;source_name&quot;: &quot;NVD Adminer&quot;,
&quot;bucket&quot;: &quot;official_sources&quot;,
&quot;kind&quot;: &quot;nvd-search&quot;,
&quot;retired_reason&quot;: &quot;OSV Adminer provides a machine-readable Packagist-aligned source, removing the need for NVD public search.&quot;,
&quot;replacement_sources&quot;: [
&quot;OSV Adminer&quot;
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;adobe-commerce&quot;,
&quot;display_name&quot;: &quot;Adobe Commerce&quot;,
@@ -114,6 +126,18 @@
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;adobe-commerce&quot;,
&quot;display_name&quot;: &quot;Adobe Commerce&quot;,
&quot;source_name&quot;: &quot;NVD Adobe Commerce&quot;,
&quot;bucket&quot;: &quot;official_sources&quot;,
&quot;kind&quot;: &quot;nvd-search&quot;,
&quot;retired_reason&quot;: &quot;Adobe Magento Security Index is now the active official machine-readable source, so NVD public search is no longer needed for daily collection.&quot;,
&quot;replacement_sources&quot;: [
&quot;Adobe Magento Security Index&quot;
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;adobe-commerce&quot;,
&quot;display_name&quot;: &quot;Adobe Commerce&quot;,
@@ -139,6 +163,44 @@
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;apache-httpd&quot;,
&quot;display_name&quot;: &quot;Apache HTTP Server&quot;,
&quot;source_name&quot;: &quot;NVD Apache HTTP Server&quot;,
&quot;bucket&quot;: &quot;official_sources&quot;,
&quot;kind&quot;: &quot;nvd-search&quot;,
&quot;retired_reason&quot;: &quot;Official Apache HTTPD advisories page plus CISA KEV are sufficient active sources for daily monitoring.&quot;,
&quot;replacement_sources&quot;: [
&quot;Apache HTTPD Security&quot;,
&quot;CISA KEV Apache HTTPD&quot;
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;apache-tomcat&quot;,
&quot;display_name&quot;: &quot;Apache Tomcat&quot;,
&quot;source_name&quot;: &quot;NVD Tomcat&quot;,
&quot;bucket&quot;: &quot;official_sources&quot;,
&quot;kind&quot;: &quot;nvd-search&quot;,
&quot;retired_reason&quot;: &quot;Official Tomcat advisories page plus CISA KEV are sufficient active sources for daily monitoring.&quot;,
&quot;replacement_sources&quot;: [
&quot;Apache Tomcat Security&quot;,
&quot;CISA KEV Tomcat&quot;
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;aspnet-core&quot;,
&quot;display_name&quot;: &quot;ASP.NET Core&quot;,
&quot;source_name&quot;: &quot;NVD ASP.NET Core&quot;,
&quot;bucket&quot;: &quot;official_sources&quot;,
&quot;kind&quot;: &quot;nvd-search&quot;,
&quot;retired_reason&quot;: &quot;OSV ASP.NET Core provides machine-readable NuGet-aligned coverage with lower latency than NVD public search.&quot;,
&quot;replacement_sources&quot;: [
&quot;OSV ASP.NET Core&quot;
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;astro&quot;,
&quot;display_name&quot;: &quot;Astro&quot;,
@@ -288,6 +350,19 @@
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;gitlab-ce&quot;,
&quot;display_name&quot;: &quot;GitLab CE&quot;,
&quot;source_name&quot;: &quot;NVD GitLab&quot;,
&quot;bucket&quot;: &quot;official_sources&quot;,
&quot;kind&quot;: &quot;nvd-search&quot;,
&quot;retired_reason&quot;: &quot;GitLab Security Releases Atom provides an official machine-readable feed, so NVD public search is no longer required.&quot;,
&quot;replacement_sources&quot;: [
&quot;GitLab Security Releases&quot;,
&quot;GitLab Security Releases Atom&quot;
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;hapi&quot;,
&quot;display_name&quot;: &quot;Hapi&quot;,
@@ -312,6 +387,31 @@
],
&quot;url&quot;: &quot;https://www.haproxy.org/security/&quot;
},
{
&quot;system_id&quot;: &quot;haproxy&quot;,
&quot;display_name&quot;: &quot;HAProxy&quot;,
&quot;source_name&quot;: &quot;NVD HAProxy&quot;,
&quot;bucket&quot;: &quot;official_sources&quot;,
&quot;kind&quot;: &quot;nvd-search&quot;,
&quot;retired_reason&quot;: &quot;HAProxy Blog Feed is an active official RSS source, so NVD public search is no longer required.&quot;,
&quot;replacement_sources&quot;: [
&quot;HAProxy Blog Feed&quot;
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;jenkins&quot;,
&quot;display_name&quot;: &quot;Jenkins&quot;,
&quot;source_name&quot;: &quot;NVD Jenkins&quot;,
&quot;bucket&quot;: &quot;official_sources&quot;,
&quot;kind&quot;: &quot;nvd-search&quot;,
&quot;retired_reason&quot;: &quot;Jenkins Security Advisories RSS provides an official machine-readable feed, replacing NVD public search.&quot;,
&quot;replacement_sources&quot;: [
&quot;Jenkins Security Advisories&quot;,
&quot;Jenkins Security Advisories RSS&quot;
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;joomla&quot;,
&quot;display_name&quot;: &quot;Joomla&quot;,
@@ -325,6 +425,19 @@
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;kibana&quot;,
&quot;display_name&quot;: &quot;Kibana&quot;,
&quot;source_name&quot;: &quot;NVD Kibana&quot;,
&quot;bucket&quot;: &quot;official_sources&quot;,
&quot;kind&quot;: &quot;nvd-search&quot;,
&quot;retired_reason&quot;: &quot;Elastic Security Announcements RSS provides an official machine-readable feed, replacing NVD public search.&quot;,
&quot;replacement_sources&quot;: [
&quot;Elastic Security Announcements&quot;,
&quot;Elastic Security Announcements RSS&quot;
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;koa&quot;,
&quot;display_name&quot;: &quot;Koa&quot;,
@@ -349,6 +462,19 @@
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;magento-open-source&quot;,
&quot;display_name&quot;: &quot;Magento Open Source&quot;,
&quot;source_name&quot;: &quot;NVD Magento&quot;,
&quot;bucket&quot;: &quot;official_sources&quot;,
&quot;kind&quot;: &quot;nvd-search&quot;,
&quot;retired_reason&quot;: &quot;OSV Magento Open Source plus Magento GitHub advisories replace NVD public search for machine-readable collection.&quot;,
&quot;replacement_sources&quot;: [
&quot;Magento GitHub Advisories&quot;,
&quot;OSV Magento Open Source&quot;
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;mattermost&quot;,
&quot;display_name&quot;: &quot;Mattermost&quot;,
@@ -461,6 +587,19 @@
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;nginx&quot;,
&quot;display_name&quot;: &quot;Nginx&quot;,
&quot;source_name&quot;: &quot;NVD NGINX&quot;,
&quot;bucket&quot;: &quot;official_sources&quot;,
&quot;kind&quot;: &quot;nvd-search&quot;,
&quot;retired_reason&quot;: &quot;Official NGINX advisories page and CISA KEV together provide the needed daily signal without NVD public-search latency.&quot;,
&quot;replacement_sources&quot;: [
&quot;NGINX Security Advisories&quot;,
&quot;CISA KEV NGINX&quot;
],
&quot;url&quot;: &quot;&quot;
},
{
&quot;system_id&quot;: &quot;nuxt&quot;,
&quot;display_name&quot;: &quot;Nuxt&quot;,