Xray: Validating CVE Existence In Xray DB

XRAY: Validating CVE Existence In Xray DB

AuthorFullName__c
Or Naishtat
articleNumber
000005214
ft:sourceType
Salesforce
FirstPublishedDate
2022-02-21T09:48:03Z
lastModifiedDate
2022-02-21
VersionNumber
8

When we initiate the DB sync for the first time, Xray will download all vulnerabilities and components information from a global database which is continuously updated by various sources such as NVD/Redhat/Debian etc and store the information in Xray’s database.

The initial DB sync would take some time to be completed as it needs to download all the data from the Global database. However, once the initial sync is completed, the daily database sync would be faster as it will only download and update the delta between the global database and Xray.

 

User-added image

In some cases, we would like to confirm that a specific vulnerability is updated in the Xray Database, to confirm this we may execute the following queries -