Mend API (3.0.1)
Mend's enhanced SCA API enables automation of workflows in a REST compliant format. The API features:
- Access for any user with Mend credentials, via a user key available in the user's profile page in the Mend App.
- Improved security with a JWT token per organization, which expires every 30 minutes.
- Added scalability with support for pagination, filtering and sorting search results.
- Broader functionality available programmatically.
- New standard API documentation for easy navigation and search.
If you have a dedicated instance of Mend, contact your Mend representative to access this API on your instance.
- Generated server url
https://api-saas.mend.io/api/v2.0/vulnerabilities/{vulnerabilityId}/remediation
- Payload
- cURL
- JS
- Go
- Ruby
- Java 8
No request payload
Response
application/json
{ "supportToken": "1171c60d", "retVal": { "vulnerability": "CVE-2021-42392", "topRankedFix": { … }, "allFixes": [ … ], "totalUpVotes": 0, "totalDownVotes": 0 } }
- Generated server url
https://api-saas.mend.io/api/v2.0/vulnerabilities/{vulnerabilityId}
- Payload
- cURL
- JS
- Go
- Ruby
- Java 8
No request payload
Response
application/json
{ "supportToken": "1171c60d", "retVal": { "name": "CVE-2021-42392", "type": "WS", "description": "Security vulnerability found in plexus-utils before 3.0.24. XML injection found in XmlWriterUtil.java", "score": 5, "severity": "MEDIUM", "publishDate": "2019-08-24T14:15:22Z", "modifiedDate": "2019-08-24T14:15:22Z", "vulnerabilityScoring": [ … ], "references": [ … ], "effectiveInfo": { … }, "threatAssessment": { … } } }