Package Info

vexctl


CLI tool to create, transform and attest VEX metadata


Productivity/Security

vexctl is a CLI tool to create, apply, and attest VEX (Vulnerability Exploitability eXchange) data. Its purpose is to help with the creation and management of VEX documents that allow "turning off" security scanner alerts of vulnerabilities known not to affect a product.

VEX can be thought of as a "negative security advisory". Using VEX, software authors can communicate to their users that an otherwise vulnerable component has no security implications for their product.


License: Apache-2.0
URL: https://github.com/openvex/vexctl

Categories

Releases

Package Version Update ID Released Package Hub Version Platforms Subpackages
0.3.0-150000.1.3.1 info SUSE-SLE-Module-Packagehub-Subpackages-15-SP6-2024-4064 2024-11-26 15 SP6 Subpackages Updates
  • x86-64
  • vexctl