Skip to main content

Vulnerability database and package search for sources such as CVE, GitHub, and so on. Uses a built-in tinydb based storage engine.

Project description


Vulndb is a vulnerability database and package search for sources such as NVD, GitHub and so on. It uses a built-in file based storage to allow offline access.


pip install appthreat-vulndb


This package is meant to be used as a library along with another cli based tool such as dep-scan. However, there is a limited cli capability available with few features to test this tool directly.

Cache vulnerability data

vdb --cache

It is possible to customise the cache behaviour by increasing the historic data period to cache by setting the following environment variables.

  • NVD_START_YEAR - Default: 2016. Supports upto 2002
  • GITHUB_PAGE_COUNT - Default: 5. Supports upto 20

Periodic sync

To periodically sync the latest vulnerabilities and update the database cache.

vdb --sync

Basic search

It is possible to perform simple search using the cli.

vdb --search android:8.0

vdb --search android:8.0,simplesamlphp:1.14.11

Syntax is package:version,package:version

Project details

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Files for appthreat-vulndb, version 1.0.0
Filename, size File type Python version Upload date Hashes
Filename, size appthreat_vulndb-1.0.0-py3-none-any.whl (19.6 kB) File type Wheel Python version py3 Upload date Hashes View
Filename, size appthreat-vulndb-1.0.0.tar.gz (14.0 kB) File type Source Python version None Upload date Hashes View

Supported by

Pingdom Pingdom Monitoring Google Google Object Storage and Download Analytics Sentry Sentry Error logging AWS AWS Cloud computing DataDog DataDog Monitoring Fastly Fastly CDN DigiCert DigiCert EV certificate StatusPage StatusPage Status page