Download package vulnerability findings from the Cloudsmith web app

Vulnerability and malicious package findings can now be exported as a JSON file directly from the web app.

Select Download vulnerability data on a package’s Overview tab to export a JSON file containing every vulnerability and malicious package record currently matched to that package.

The 'Download vulnerability data' option on a package's Overview tab.

Package vulnerability data is also available from the Packages Vulnerabilities List API endpoint.

Vulnerability and malicious package detection is available on Ultra and Enterprise plans.

Keep up to date with our monthly product bulletin