Skip to content

VulnDB Consumer Secret #1096

Answered by stevespringett
ddurham2 asked this question in Q&A
Jul 9, 2021 · 1 comments · 2 replies
Discussion options

You must be logged in to vote

Yes, the consumer secret is required. For VulnDB, DT relies on OAuth 1.0a. The consumer secret use to be visible in the VulnDB UI. If it is no longer visible, you may have to contact VulnDB support.

VulnDB does support OAuth 2.0 as well. DT should eventually be updated to support it. But it hasn't been a priority since OAuth 1.0a works fine as is.

The VulnDB service has evolved a lot over the years. Certainly not an abandoned service. Its extremely useful if you want to supplement the NVD with more accurate, actionable, and timely vulnerability intel.

Replies: 1 comment 2 replies

Comment options

You must be logged in to vote
2 replies
@Matafiya
Comment options

@ValdikSS
Comment options

Answer selected by ddurham2
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
4 participants