From cbac3166aef86115d41abf6c6688f589db410f00 Mon Sep 17 00:00:00 2001 From: Fernando Fontana Date: Tue, 7 Feb 2023 00:00:18 -0300 Subject: [PATCH] osv-scanner: add page (#9831) * osv-scanner: add page The Open Source Vulnerability (OSV) Database is a distributed vulnerability database for open source ecosystems. * Apply suggestions from code review Co-authored-by: Jack Lin * osv-scanner: fix syntax --------- Co-authored-by: Jack Lin --- pages/common/osv-scanner.md | 28 ++++++++++++++++++++++++++++ 1 file changed, 28 insertions(+) create mode 100644 pages/common/osv-scanner.md diff --git a/pages/common/osv-scanner.md b/pages/common/osv-scanner.md new file mode 100644 index 0000000000..be37255d77 --- /dev/null +++ b/pages/common/osv-scanner.md @@ -0,0 +1,28 @@ +# osv-scanner + +> Scan various mediums for dependencies and matches them against the OSV database. +> More information: . + +- Scan a docker image: + +`osv-scanner -D {{docker_image_name}}` + +- Scan a package lockfile: + +`osv-scanner -L {{path/to/lockfile}}` + +- Scan an SBOM file: + +`osv-scanner -S {{path/to/sbom_file}}` + +- Scan multiple directories recursively: + +`osv-scanner -r {{directory1 directory2 ...}}` + +- Skip scanning git repositories: + +`osv-scanner --skip-git {{-r|-D}} {{target}}` + +- Output result in JSON format: + +`osv-scanner --json {{-D|-L|-S|-r}} {{target}}`