+
Skip to content

Tags: google/osv.dev

Tags

v2025.10.14

Toggle v2025.10.14's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
docs: update Ubuntu license in docs (#4156)

v2025.10.07

Toggle v2025.10.07's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
fix(frontend): prevent pURL overflow in vulnerability details (#4105)

Fixes a UI issue on the vulnerability details page, where extremely long
pURLs would overflow outside their containers. This was spotted on
[SUSE-SU-2025](https://osv.dev/vulnerability/SUSE-SU-2025:03333-1#:~:text=pkg%3Arpm/suse/avahi%26distro%3DSUSE%2520Linux%2520Enterprise%2520Module%2520for%2520Desktop%2520Applications%252015%2520SP6).
The overflow also caused the layout to break completely on mobile
displays, which should now be resolved.

v2025.09.30

Toggle v2025.09.30's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
fix: update go pubsub library to v2 (#4056)

Re: #4018 (comment)

v2025.09.25

Toggle v2025.09.25's commit message

Partially verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
We cannot verify signatures from co-authors, and some of the co-authors attributed to this commit require their commits to be signed.
chore: bump osv library version to 0.1.2 for PyPI release (#4030)

This PR bumps the osv library version to 0.1.2 for PyPI release to
include the fix in osv-schema.

Also updates the osv requirement in `gcp/functions/pypi/pyproject.toml`
(version 0.1.0 is yanked).

Co-authored-by: Rex P <106129829+another-rex@users.noreply.github.com>

v0.1.2

Toggle v0.1.2's commit message

Partially verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
We cannot verify signatures from co-authors, and some of the co-authors attributed to this commit require their commits to be signed.
chore: bump osv library version to 0.1.2 for PyPI release (#4030)

This PR bumps the osv library version to 0.1.2 for PyPI release to
include the fix in osv-schema.

Also updates the osv requirement in `gcp/functions/pypi/pyproject.toml`
(version 0.1.0 is yanked).

Co-authored-by: Rex P <106129829+another-rex@users.noreply.github.com>

v2025.09.24

Toggle v2025.09.24's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
chore(deps): update osv/osv-schema digest to c3926b6 (#4015)

This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| osv/osv-schema | digest | `99dae29` -> `c3926b6` |

---

### Configuration

📅 **Schedule**: Branch creation - "before 6am on wednesday" in timezone
Australia/Sydney, Automerge - At any time (no schedule defined).

🚦 **Automerge**: Disabled by config. Please merge this manually once you
are satisfied.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR was generated by [Mend Renovate](https://mend.io/renovate/).
View the [repository job
log](https://developer.mend.io/github/google/osv.dev).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS45Ny4xMCIsInVwZGF0ZWRJblZlciI6IjQxLjk3LjEwIiwidGFyZ2V0QnJhbmNoIjoibWFzdGVyIiwibGFiZWxzIjpbImRlcGVuZGVuY2llcyJdfQ==-->

v0.1.1

Toggle v0.1.1's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
fix: Bump minimal required Python version (#4001)

and bump osv library to version 0.1.1

#4000

v0.1.0

Toggle v0.1.0's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
chore: bump osv library version for pypi release (#3999)

Bumped this to 0.1.0 instead of 0.0.23 because there may be some larger
changes to at least the ecosystems (though hopefully not breaking
changes)

v2025.09.16

Toggle v2025.09.16's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
fix(vulnfeeds): make logging a bit better (#3955)

1. Fix the `sourceLocation` log field so that it a) maps to the location
where the logger helper function was called and b) only shows the
filename, rather than the full path.
2. When not logging in GCP, make the logs ✨ colourful
✨
<img width="521" height="74" alt="image"
src="https://github.com/user-attachments/assets/626925ee-ecc9-48bc-87d6-e0b0fa6dd7c5"
/>

v2025.09.09

Toggle v2025.09.09's commit message

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
fix(NVD): increase max length of url to align with schema (#3910)

#1833 (comment) -
it's me, I'm the fool. And I gave up so we're doing this instead.
点击 这是indexloc提供的php浏览器服务,不要输入任何密码和下载