davisjam / vuln-regex-detectorLinks
Detect vulnerable regexes in your project. REDOS, catastrophic backtracking.
☆331Updated 3 years ago
Alternatives and similar repositories for vuln-regex-detector
Users that are interested in vuln-regex-detector are comparing it to the libraries listed below
Sorting:
- njsscan is a semantic aware SAST tool that can find insecure code patterns in your Node.js applications.☆406Updated 8 months ago
- coverage guided fuzz testing for javascript☆606Updated 4 years ago
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆238Updated 2 months ago
- Find security vulnerabilities in open source npm packages while you code☆208Updated 3 years ago
- Audits an NPM package.json file to identify known vulnerabilities.☆228Updated 3 weeks ago
- JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬.☆253Updated this week
- Detect possibly catastrophic, exponential-time regular expressions☆184Updated 2 years ago
- ☆146Updated 2 years ago
- A minimal port of the old, publicly archived "owasp-esapi-js" (Enterprise Security API for JavaScript) encoder.☆139Updated 2 years ago
- ESLint security plugin for Node.js☆104Updated last year
- JavaScript security CLI that allow you to deeply analyze the dependency tree of a given package or local Node.js project.☆374Updated this week
- safely install npm packages by auditing them pre-install stage☆1,015Updated last week
- Lint an npm or yarn lockfile to analyze and detect security issues☆807Updated 2 months ago
- TSLint security rules☆69Updated 4 years ago
- Some thoughts on how Node.js might respond to a changing security environment☆173Updated 6 years ago
- RegEx Denial of Service (ReDos) Scanner☆164Updated 7 years ago
- JSON.parse() drop-in replacement with prototype poisoning protection☆237Updated 3 weeks ago
- Mitigate security concerns of Dependency Confusion supply chain security risks☆48Updated 2 weeks ago
- NodeJS runtime protection for supply chain attacks☆141Updated 3 years ago
- Incrementally better HTTP state management.☆300Updated 2 years ago
- Security advisories for Node.js and the JavaScript ecosystem.☆41Updated 4 years ago
- Express.js middleware for "Host" and "Referer" header validation to protect against DNS rebinding attacks.☆192Updated 2 years ago
- Create a Content-Security-Policy for a website based on the statically detectable relations☆77Updated last month
- Make it easy to probe the strengths and weaknesses of a hardened Node.js stack☆19Updated 6 years ago
- Delightful Node.js packages useful for penetration testing, exploiting, reverse engineer, cryptography ...☆426Updated 4 years ago
- Node.js implementation of HighwayHash, Google's fast and strong hash function☆220Updated 3 years ago
- JSON.parse() drop-in replacement with prototype poisoning protection☆173Updated 8 months ago
- Utility to help find out why Node isn't exiting☆585Updated 6 months ago
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- A CLI and library which tests helps score how vulnerable a regex pattern is to ReDoS attacks. Supported in the browser, Node and Deno.☆49Updated last week