ADVANCED QUERY FILTER
Vulnerabilities
q= Filter
Examples for querying vulnerabilities:
Example 1 - Critical or High vulnerabilities only:
curl -G -X GET 'https://localhost:3000/api/ss/vulnerabilities' --data-urlencode 'q_vulnerability={ priority: { $in: ["Critical", "High" ] } }' -H 'Host: localhost:3000' -H 'X-SSAPI-KEY: ********' -H 'Content-Type: application/json' -H 'Connection: close'Example 2 - Open Critical or Open High vulnerabilities only:
curl -G -X GET 'https://localhost:3000/api/ss/vulnerabilities' --data-urlencode 'q_vulnerability={ $and: [ { priority: { $in: [ "Critical", "High" ] } }, { status: { $eq: "Open" } } ] }' -H 'Host: localhost:3000' -H 'X-SSAPI-KEY: ********' -H 'Content-Type: application/json' -H 'Connection: close'Example 3 - Critical or High Ready for Retest vulnerabilities only:
curl -G -X GET 'https://localhost:3000/api/ss/vulnerabilities' --data-urlencode 'q_vulnerability={ $and: [ { priority: { $in: [ "Critical", "High" ] } }, { is_retest: { $eq: "Yes" } } ] }' -H 'Host: localhost:3000' -H 'X-SSAPI-KEY: ********' -H 'Content-Type: application/json' -H 'Connection: close'Example 4 - Critical or High vulnerabilities discovered in last 24 hours:
curl -G -X GET 'https://localhost:3000/api/ss/vulnerabilities' --data-urlencode 'q_vulnerability={ $and: [ { priority: { $in: [ "Critical" ] } }, { status: { $eq: "Open" } }, { created: { $gte: datetime("now", "-1 days") } } ] }' -H 'Host: localhost:3000' -H 'X-SSAPI-KEY: ********' -H 'Content-Type: application/json' -H 'Connection: close'Examples for querying writeups:
Example 5 - Writeups with title SQL Injection:
Example 6 - Writeups with the tag pluginID:53360:
Example 7 - Writeups with the custom field NessusID and value 53360:
Operators
$regex
$elemMatch
$all
Functions
datetime(timeValue, modifiers)
Vulnerability Fields
Vulnerability Library (Writeup) Fields
attack_scenario
remediation_recommendation
impact_on_confidentiality
impact_on_integrity
impact_on_availability
import_source
import_source_id
tags
Project Fields
status
org_code
Asset Fields
Last updated