ShiftLeftSecurity / HelloShiftLeftLinks
☆11Updated 2 years ago
Alternatives and similar repositories for HelloShiftLeft
Users that are interested in HelloShiftLeft are comparing it to the libraries listed below
Sorting:
- ☆122Updated 9 months ago
- CycloneDX SBOM Model and Utils for Creating and Validating BOMs☆103Updated last week
- Integrates Xanitizer results into SonarQube☆21Updated 4 years ago
- A Java library for calculating CVSSv2, CVSSv3, and CVSSv4 scores and vectors☆51Updated 2 weeks ago
- Plugin for supporting SPDX in a Maven build.☆59Updated last month
- CVE database☆21Updated 5 years ago
- A simple Java command-line utility to mirror the entire contents of VulnDB.☆48Updated 6 months ago
- Safelog4j is an instrumentation-based security tool to help teams discover, verify, and solve log4shell vulnerabilities without scanning …☆43Updated 3 months ago
- CVE Automation Working Group☆180Updated this week
- ☆21Updated 3 years ago
- Generate thousands of pull requests to fix widespread security vulnerabilities across GitHub.☆36Updated 8 months ago
- Report missing advisories and corrections on OSS Index☆17Updated 3 years ago
- A utility for validating and parsing Common Platform Enumeration (CPE) v2.2 and v2.3 as originally defined by MITRE and maintained by NIS…☆54Updated last week
- OpenRewrite recipes to continuously modernize Jenkins plugins.☆13Updated last week
- Externalize Java application access to protected resources as log messages.☆43Updated 2 weeks ago
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆160Updated last year
- Software Component Verification Standard (SCVS)☆153Updated 10 months ago
- Integrates OWASP Zed Attack Proxy reports into SonarQube☆73Updated 6 months ago
- Test and monitor your projects for vulnerabilities with Maven. This plugin is officially maintained by Snyk.☆82Updated 2 months ago
- SWAMP-in-a-Box☆62Updated 5 years ago
- OWASP SonarQube Project☆112Updated 6 years ago
- SARIF Microsoft Visual Studio Code extension☆132Updated 2 weeks ago
- sigstore maven plugin☆19Updated last year
- Jenkins plugin for OWASP Dependency-Check. Inspects project components for known vulnerabilities (e.g. CVEs).☆138Updated last week
- Descartes supports developers to improve their test suites by reporting weak spots in covered code☆126Updated 4 months ago
- OWASP Security Logging library for Java☆120Updated 2 years ago
- Home page of project "KB"☆132Updated 10 months ago
- A rule for the Maven enforcer plugin to check for vulnerable artifacts within a project.☆42Updated 5 years ago
- ☆113Updated this week
- A collection of test cases in the Java language. It contains examples for 112 different CWEs.☆61Updated 4 years ago