Skip to main content

Labeling of objects of the Software Heritage archive with known vulnerabilities affecting them.

Deployment

Install dependencies:

  1. cargo install --locked swh-graph swh-vulns-grpc-server

  2. pip3 install swh.graph

Get data files:

  1. Get swh-graph: swh graph download --name 2026-03-02 (~15TB)

  2. From s3://softwareheritage/derived_datasets/2026-03-02/vulnerabilities/, download :all.sqlite, :commit2vuln_without_cherrypicks.*, and :connected_components.wccs, about 10GB. (Ignore other files in the directory, they weigh about 1.5TB.)

Run this:

swh-vulns-grpc-serve \
    --db ./2026-03-02/all.sqlite \
    --commit2vuln ./2026-03-02/commit2vuln_without_cherrypicks \
    --subgraphwccs ./2026-03-02/connected_components.wccs \
    --graph ./2026-03-02/graph \
    --bind 127.0.0.1:<port>

note that --commit2vuln and --graph should omit the file extension

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

swh_vulns-0.2.2.tar.gz (81.6 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

swh_vulns-0.2.2-py3-none-any.whl (28.3 kB view details)

Uploaded Python 3

File details

Details for the file swh_vulns-0.2.2.tar.gz.

File metadata

  • Download URL: swh_vulns-0.2.2.tar.gz
  • Upload date:
  • Size: 81.6 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.11.15

File hashes

Hashes for swh_vulns-0.2.2.tar.gz
Algorithm Hash digest
SHA256 521fb6bf7d64df4efd169f728e35e57bba83773ffb9632ac21d4117e70213898
MD5 496c7ed1c1b87189d6f6ca4102a1faf5
BLAKE2b-256 9a94428a0539431331594cd288f6a11d5f33ed9948b1b1f7ed79a0f5b7731d18

See more details on using hashes here.

File details

Details for the file swh_vulns-0.2.2-py3-none-any.whl.

File metadata

  • Download URL: swh_vulns-0.2.2-py3-none-any.whl
  • Upload date:
  • Size: 28.3 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.11.15

File hashes

Hashes for swh_vulns-0.2.2-py3-none-any.whl
Algorithm Hash digest
SHA256 c35085e158ddf466a60a30e190b86ac568ba6d5dad31be22be25b1c28232e32b
MD5 fc9d030fd80e1de232452c378a08e8ff
BLAKE2b-256 bd313d1b3efd02b07b02cf1230cc9b845635c2410e87682635ce720a53d315e4

See more details on using hashes here.

Release history Release notifications | RSS feed

0.2.5

2 files

0.2.3

2 files

This release

0.2.2 This release

2 files

0.2.1

2 files

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page