Interface OsvAffected

Describes which versions of a package are affected by a vulnerability.

interface OsvAffected {
    database_specific?: Record<string, unknown>;
    ecosystem_specific?: Record<string, unknown>;
    package?: OsvPackageIdentifier;
    ranges?: OsvRange[];
    versions?: string[];
}

Properties

database_specific?: Record<string, unknown>

Database-specific metadata

ecosystem_specific?: Record<string, unknown>

Ecosystem-specific metadata

The affected package — may be absent when purl is specified at range level

ranges?: OsvRange[]

Version ranges describing the scope of the vulnerability

versions?: string[]

Explicit list of affected versions