cve-report-aggregator is an open-source command-line tool that aggregates and deduplicates vulnerability scan reports from tools like Grype and Trivy. It helps security engineers and DevOps teams streamline vulnerability management by consolidating findings and reducing redundant entries.
In the Security & compliance platforms space, cve-report-aggregator takes a focused approach. It focuses on combining and deduplicating vulnerability scan reports from multiple security tools for easier analysis. It is built as an open-source project for security engineers and DevOps teams. cve-report-aggregator is open source under the AGPL-3.0 license. It ships for the command line.
Behind cve-report-aggregator is mkm29, and it first shipped in 2025. The project is developed in the open on GitHub with 59 commits in the last 90 days. Key capabilities include report aggregation, deduplication, and grype support.
Summary written by a language model from the project’s public pages.
What PulseGate has recorded for this listing
Same category — not a similarity match