{"repo":"OWASP/cwe-tool","free":true,"listed":false,"github":"https://github.com/OWASP/cwe-tool","clone":"git clone https://github.com/OWASP/cwe-tool.git","description":"A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.","language":"JavaScript","stars":64,"topics":["cwe","cwe-discovery","json","cli","owasp","cve","vulnerabilities","mitre"],"license":"Apache-2.0","category":"cli-tools","readme_excerpt":"cwe-tool A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration. Official OWASP CWE Toolkit Page Install Executable with Node.js tooling If you have a Node.js environment, you can invoke cwe-tool using the npx tool as follows: Docker Pull the image from Docker Hub Local build instructions -t image name above can be an image name of your choosing! Run examples with Docker Do not want to build locally? Pull the image down Pull image from Github package registry and run a search Usage The CWE Tool output is JSON to allow processing of the data or later investigations. Command-line options blueprint: command-line argument description implemented --------------------- --------------------------------------------------------------------------------------------------- -------------- --id Get a CWE data by its ID. ✅ --parent-id When both --id and --parent-id are provided, returns only CWE ids which satisfy the parent id. ✅ PRs welcome --indirect When specified along with --parent-id , retrieves all indirect parents up to the root of the tree. ✅ --search String search returns all the matching CWEs titles ✅ --show-membership Returns all the CWE IDs along with their CWE Category membership relations ❌ PRs welcome Example Get CWE By ID Filter for CWE IDs that satisfy a parent relationship The following command filters all CWE IDs based on whether they satisfy any direct or indirect relationship across the tree to a given parent ID. The output is","default_branch":null,"files":null,"tree":[],"storefront":"/r/OWASP","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/OWASP/cwe-tool/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}