ossf-cve-benchmark

ossf-cve-benchmark

ossf-cve-benchmark

The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebases using a variety of static analysis security testing (SAST) tools and generate reports to evaluate those tools.

144 Stars
38 Forks
144 Watchers
TypeScript Language
mit License
Cost to Build
$40.5K
Market Value
$112.5K

Growth over time

11 data points  ·  2021-08-01 → 2025-06-01
Stars Forks Watchers
💬

How do you feel about this project?

Ask AI about ossf-cve-benchmark

Question copied to clipboard

What is the ossf-cve-benchmark/ossf-cve-benchmark GitHub project? Description: "The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebases using a variety of static analysis security testing (SAST) tools and generate reports to evaluate those tools.". Written in TypeScript. Explain what it does, its main use cases, key features, and who would benefit from using it.

Question is copied to clipboard — paste it after the AI opens.

How to clone ossf-cve-benchmark

Clone via HTTPS

git clone https://github.com/ossf-cve-benchmark/ossf-cve-benchmark.git

Clone via SSH

[email protected]:ossf-cve-benchmark/ossf-cve-benchmark.git

Download ZIP

Download master.zip

Found an issue?

Report bugs or request features on the ossf-cve-benchmark issue tracker:

Open GitHub Issues