Vulnerabilities · GraphQL query

vulnerabilityInputToCVEIds query

Returns the ids of the CVEs that affect a product described in free text, such as "OpenSSL 3.0.1 on Ubuntu 22.04". It combines vulnerabilityInputToCPE, which uses AI to derive CPE names, with vulnerabilityCPEtoCVEIds. An empty list means either no matching CVEs or that the description could not be turned into CPE names.

Response

Returns a CVEIdsPayload!

Arguments

Name Description
orgId - OrganizationId! The id of the Organization.
input - String! Input.
aiModel - AiModelInput Optionally specify AI model to utilize.

Example

Query

query vulnerabilityInputToCVEIds(
  $orgId: OrganizationId!,
  $input: String!,
  $aiModel: AiModelInput
) {
  vulnerabilityInputToCVEIds(
    orgId: $orgId,
    input: $input,
    aiModel: $aiModel
  ) {
    ids
  }
}

Variables

{
  "orgId": "615f3b3b28284380e28a7342",
  "input": "abc123",
  "aiModel": AiModelInput
}

Response

{
  "data": {
    "vulnerabilityInputToCVEIds": {
      "ids": ["4"]
    }
  }
}