Skip to main content

Labeling of objects of the Software Heritage archive with known vulnerabilities affecting them.

Deployment

Install dependencies:

  1. cargo install --locked swh-graph swh-vulns-grpc-server

  2. pip3 install swh.graph

Get data files:

  1. Get swh-graph: swh graph download --name 2026-03-02 (~15TB)

  2. From s3://softwareheritage/derived_datasets/2026-03-02/vulnerabilities/, download :all.sqlite, :commit2vuln_without_cherrypicks.*, and :connected_components.wccs, about 10GB. (Ignore other files in the directory, they weigh about 1.5TB.)

Run this:

swh-vulns-grpc-serve \
    --db ./2026-03-02/all.sqlite \
    --commit2vuln ./2026-03-02/commit2vuln_without_cherrypicks \
    --subgraphwccs ./2026-03-02/connected_components.wccs \
    --graph ./2026-03-02/graph \
    --bind 127.0.0.1:<port>

note that --commit2vuln and --graph should omit the file extension

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

swh_vulns-0.2.3.tar.gz (81.6 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

swh_vulns-0.2.3-py3-none-any.whl (27.2 kB view details)

Uploaded Python 3

File details

Details for the file swh_vulns-0.2.3.tar.gz.

File metadata

  • Download URL: swh_vulns-0.2.3.tar.gz
  • Upload date:
  • Size: 81.6 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.11.15

File hashes

Hashes for swh_vulns-0.2.3.tar.gz
Algorithm Hash digest
SHA256 b6f1696ab238efb328f1810ee5f6fbd53f3ff923f548372854a9f46c621080e2
MD5 192caef2cc493377c3bbae1e42c415d3
BLAKE2b-256 5f3e218315702f12e13522176f53fc6378ffcd652f744e4c20291e3cec8af831

See more details on using hashes here.

File details

Details for the file swh_vulns-0.2.3-py3-none-any.whl.

File metadata

  • Download URL: swh_vulns-0.2.3-py3-none-any.whl
  • Upload date:
  • Size: 27.2 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.11.15

File hashes

Hashes for swh_vulns-0.2.3-py3-none-any.whl
Algorithm Hash digest
SHA256 69ff8901d2fa5762f1c2fc7c69b945c545b4e2e0ad86466260847dba778f039f
MD5 c6a97dd80a83a59b956b944418a05aa9
BLAKE2b-256 98587d8baddb5f2cd2a59ca24e8f64e86b7cc577b589403d7ccf0e4cc3960c31

See more details on using hashes here.

Release history Release notifications | RSS feed

0.2.5

2 files

This release

0.2.3 This release

2 files

0.2.2

2 files

0.2.1

2 files

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page