notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photos
All times are UTC
Ukraine
The recently imposed "must be logged in" restriction is a response to increased bot traffic on the site. This affects search, commits, and vuxml pages.
Search engines are not blocked. Try using "site:www.freshports.org" and your search terms.
After the ports freeze to fix some stuff, the freeze is over. I have some work to do before FreshPorts can start processing commits again before it can start processing again. I've created an issue for that.
Port details on branch 2026Q3
osv-scanner Vulnerability scanner written in Go which uses the OSV database
2.4.0_1 security on this many watch lists=0 search for ports that depend on this port Find issues related to this port Report an issue related to this port View this port on Repology. pkg-fallout 2.4.0_1Version of this port present on the latest quarterly branch.
Maintainer: dutra@FreeBSD.org search for ports maintained by this maintainer
Port Added: 2026-07-10 08:24:41
Last Update: 2026-07-10 08:00:52
Commit Hash: c328c3d
License: APACHE20
WWW:
https://github.com/google/osv-scanner
Description:
Use OSV-Scanner to find existing vulnerabilities affecting your projects dependencies. OSV-Scanner provides an officially supported frontend to the OSV database that connects a projects list of dependencies with the vulnerabilities that affect them. Since the OSV.dev database is open source and distributed, it has several benefits in comparison with closed source advisory databases and scanners: * Each advisory comes from an open and authoritative source. * Anyone can suggest improvements to advisories, resulting in a very high quality database. * The OSV format unambiguously stores information about affected versions in a machine-readable format that precisely maps onto a developers list of packages. The above all results in fewer, more actionable vulnerability notifications, which reduces the time needed to resolve them.
Homepage    cgit ¦ Codeberg ¦ GitHub ¦ GitLab ¦ SVNWeb - no subversion history for this port

Manual pages:
FreshPorts has no man page information for this port.
pkg-plist: as obtained via: make generate-plist
Expand this list (4 items)
Collapse this list.
  1. bin/osv-scanner
  2. /usr/local/share/licenses/osv-scanner-2.4.0_1/catalog.mk
  3. /usr/local/share/licenses/osv-scanner-2.4.0_1/LICENSE
  4. /usr/local/share/licenses/osv-scanner-2.4.0_1/APACHE20
Collapse this list.
USE_RC_SUBR (Service Scripts)
  • no SUBR information found for this port
Dependency lines:
  • osv-scanner>0:security/osv-scanner
To install the port:
cd /usr/ports/security/osv-scanner/ && make install clean
To add the package, run one of these commands:
  • pkg install security/osv-scanner
  • pkg install osv-scanner
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.
PKGNAME: osv-scanner
Flavors: there is no flavor information for this port.
NOT_FOR_ARCHS: armv6 armv7 i386 powerpc powerpcspe
distinfo:
TIMESTAMP = 1782091964 SHA256 (go/security_osv-scanner/osv-scanner-v2.4.0/v2.4.0.mod) = 1e0469f8c5971ffe40781bfa7046c055414fa4ea436d176f9a3e9dfafc3a56f4 SIZE (go/security_osv-scanner/osv-scanner-v2.4.0/v2.4.0.mod) = 11098

Expand this list (2 items)

Collapse this list.

SHA256 (go/security_osv-scanner/osv-scanner-v2.4.0/v2.4.0.zip) = 363092ca4fb71e414e73d68822f6d6bbdb776e11a079e3f9d217e7d3bb1eb7fe SIZE (go/security_osv-scanner/osv-scanner-v2.4.0/v2.4.0.zip) = 12917395

Collapse this list.


No package information for this port in our database
Sometimes this happens. Not all ports have packages. Perhaps there is a build error. Check the fallout link: pkg-fallout
Dependencies
NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
Build dependencies:
  1. go126 : lang/go126
Runtime dependencies:
  1. go126 : lang/go126
Fetch dependencies:
  1. go126 : lang/go126
There are no ports dependent upon this port

Configuration Options:
===> The following configuration options are available for osv-scanner-2.4.0_1: DOCS=on: Build and/or install documentation ===> Use 'make config' to modify these settings
Options name:
security_osv-scanner
USES:
go:1.26+,modules,run zip
FreshPorts was unable to extract/find any pkg message
Master Sites:
Expand this list (1 items)
Collapse this list.
  1. https://proxy.golang.org/github.com/google/osv-scanner/v2/@v/
Collapse this list.

Number of commits found: 1

Commit History - (may be incomplete: for full details, see links to repositories near top of page)
CommitCreditsLog message
2.4.0_1
10 Jul 2026 08:00:52
commit hash: c328c3d404abdecbaf1429067d07fa84f6de3487commit hash: c328c3d404abdecbaf1429067d07fa84f6de3487commit hash: c328c3d404abdecbaf1429067d07fa84f6de3487commit hash: c328c3d404abdecbaf1429067d07fa84f6de3487 files touched by this commit
Dag-Erling Smørgrav (des) search for other commits by this committer
various: Bump go ports for go-1.25.12 / 1.26.5

Number of commits found: 1