Concourse resource that uses the NVD-NIST vulnerability RSS feed.
./scripts/build
sudo docker build -t your-dockerhub-username/nvd-cve-resource .
sudo docker push your-dockerhub-username/nvd-cve-resource
resource_types:
- name: cve-resource
type: docker-image
source:
repository: your-dockerhub-username/nvd-cve-resource
resources:
- name: all-cves
type: cve-resource
source:
filter: ".*"
jobs:
- name: cve-alert
plan:
- get: all-cves
trigger: true
- task: alert
config:
platform: linux
image_resource:
type: docker-image
source: {repository: ubuntu}
run:
path: echo
args: ["There is a new CVE"]