JSON response

Source code:

  • If the "Enable dependency check for source code" option is not enabled, please ignore all "dependencies" attributes

{
"final_verdict":{//the aggregated section for both direct and dependent libs
"blocked": "<boolean>", //true: found CVEs that have severities are higher than the configured threshold, otherwise it is false
"verdict": "<string>",
//<"No Vulnerabilities Found" | "Vulnerabilities Found" | "License Risk Found"> //explaination
"verdict_explanation": ["<string>"],
"vulnerable_package_count": "<int>", //total direct and dependent vulnerable libs
"total_package_count": "<int>", //total direct and dependent libs
"vulnerability_counts":{ // total unique direct and dependent vulnerabilities
"critical": "<int>", //total critical CVE
"high": "<int>", //total high CVE
"medium": "<int>", //total medium CVE
"low": "<int>", //total low CVE

Container:

{
"final_verdict":{
"blocked": "<boolean>",
"verdict": "<string>",//<"No Vulnerabilities Found" | "Vulnerabilities Found">
"verdict_explanation": ["<string>"],
"vulnerable_package_count": "<int>",
"total_package_count": "<int>",
"vulnerability_counts":{
"critical": "<int>",
"high": "<int>",
"medium": "<int>",
"low": "<int>",
"unknown": "<int>"
},
"severity": "<string>"
},
"scan_mode": "container",
"os_info": {
"os_name": "<string>",
"os_version": "<string>"
},
"steps": [
{
"step": "<int>",
"command": "<string>",
"sha256": "<string>",
"severity": "<string>",
"vulnerability_count": "<int>",


On This Page
JSON response