AppThreat / vuln-listLinks
Linux upstream vulnerabilities data suitable for dep-scan
☆21Updated this week
Alternatives and similar repositories for vuln-list
Users that are interested in vuln-list are comparing it to the libraries listed below
Sorting:
- Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.2, purl, and vers…☆133Updated last week
- OSS-Fuzz vulnerabilities for OSV.☆167Updated this week
- Vulnogram is the tool for reserving, managing, and publishing CVEs. Get started at vulnogram.org or deploy Docker edition for full enterp …☆212Updated this week
- A Python library and command line interface for CVE Services.☆71Updated 2 months ago
- A taxonomy of attacks on software supply chains in the form of an attack tree, based on and linked to numerous real-world incidents and o…☆79Updated last month
- Cybersecurity of Machine Learning and Artificial Intelligence☆69Updated 3 years ago
- Security Work and Manual Reviews facilitated by Open Source Technology Improvement Fund, aka OSTIF☆33Updated last month
- Python API for vFeed Vulnerability & Threat Intelligence Database Enterprise & Pro Editions☆104Updated last week
- CredSweeper is a tool to detect credentials in any directories or files. CredSweeper could help users to detect unwanted exposure of cred…☆145Updated this week
- Tool to guess CPE name based on common software name☆108Updated 3 months ago
- CveXplore☆43Updated 3 months ago
- Manager of third-party sources of Semgrep rules 🗂☆92Updated last year
- A community collection of security reviews of open source software components.☆96Updated last year
- SourceGPT - prompt manager and source code analyzer built on top of ChatGPT as the oracle☆109Updated 2 years ago
- an extension for Burp Suite to allow researchers to utilize GPT for analys is of HTTP requests and responses☆112Updated 2 years ago
- ☆56Updated last week
- Community reconstruction of the legacy JSON NVD Data Feeds. This project uses and redistributes data from the NVD API but is neither endo…☆193Updated this week
- Dependency Combobulator☆94Updated last year
- Fast, simple library in Go to fetch CVEs from the National Vulnerability Database feeds☆27Updated 2 years ago
- The official repository of ICSME'23 paper "Exploring Security Commits in Python"☆18Updated 2 years ago
- ☆52Updated last year
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆157Updated last year
- Static Token And Credential Scanner☆95Updated 2 years ago
- CVE.ICU code.☆49Updated this week
- Scripts for Sourcegraph search results. Useful for static analysis <3☆28Updated 2 years ago
- Documentation of Semgrep: a fast, open-source, static analysis tool.☆47Updated this week
- InfoSec OpenAI Examples☆19Updated 2 years ago
- A collection of Semgrep rules which followed security guidelines for .NET and Java.☆23Updated 4 years ago
- DustiLock is a tool to find which of your dependencies is susceptible to a Dependency Confusion attack.☆40Updated 4 years ago
- Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)☆61Updated 8 months ago