A cli that can be used to query various online vulnerability sources such as the NVD or GHSA. The CLI and docker images can be used to mirror the NVD.
☆174Jun 18, 2026Updated last month
Alternatives and similar repositories for open-vulnerability-cli
Users that are interested in open-vulnerability-cli are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Java library for working with available vulnerability data sources (GitHub Security Advisories, NVD, EPSS, CISA Known Exploited Vulnerabi…☆17Updated this week
- A utility for validating and parsing Common Platform Enumeration (CPE) v2.2 and v2.3 as originally defined by MITRE and maintained by NIS…☆56Jan 26, 2026Updated 5 months ago
- Demonstrates how a malicious dependency could negatively impact the build output.☆28Aug 11, 2023Updated 2 years ago
- Build a local copy of Known Exploited Vulnerabilities Catalog by CISA. Server mode for easy querying.☆26Updated this week
- GitHub app for SBOM creation using cdxgen and upload to Dependency-Track☆24Updated this week
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Incubating project for decoupling responsibilities from Dependency-Track's monolithic API server into separate, scalable services.☆105May 29, 2026Updated last month
- A Python client for the Global CVE Allocation System.☆20Jul 15, 2026Updated last week
- Fork of OpenSearch Dashboards Security Plugin.☆14Updated this week
- Generate VEX (Vulnerability Exploitability Exchange) CycloneDX documents☆25Jan 19, 2025Updated last year
- CycloneDX SBOM Model and Utils for Creating and Validating BOMs☆116Updated this week
- Creates CycloneDX Software Bill of Materials (SBOM) from Gradle projects☆233Updated this week
- Utility that provides an API and CLI to identify licenses and legal terms☆54Jul 11, 2025Updated last year
- A modular MCP server providing AI-driven vulnerability management skills, including severity classification and automated insights.☆33Jul 2, 2026Updated 3 weeks ago
- An agent that can help triage vulnerabilities across multiple codebases☆18Mar 14, 2026Updated 4 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Assessors Studio operationalizes CycloneDX Attestations (CDXA): perform assessments, collect evidence, make claims, and issue machine-rea…☆15Updated this week
- ☆26Aug 3, 2024Updated last year
- Versioning CLI tool and Library☆21Apr 22, 2026Updated 3 months ago
- Streamline vulnerability patching with CVSS, EPSS, and CISA's Known Exploited Vulnerabilities. Prioritize actions based on real-time thre…☆707Jan 6, 2026Updated 6 months ago
- A small tool that helps Incident responders and SOC analysts do a quick and initial analysis/assessment of malicious files☆27Mar 1, 2023Updated 3 years ago
- Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supp…☆4,041Updated this week
- Mitigation validation utility for the Ivanti Connect Around attack chain. Runs multiple checks. CVE-2023-46805, CVE-2024-21887.☆12Feb 3, 2024Updated 2 years ago
- sbomqs: The Comprehensive SBOM Quality & Compliance Tool☆297Updated this week
- An open source badge☆10Oct 8, 2025Updated 9 months ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- ☆15Dec 17, 2021Updated 4 years ago
- 收集了java XXE漏洞的demo及修复方式☆19Mar 11, 2024Updated 2 years ago
- ☆123Apr 15, 2025Updated last year
- A kubernetes native workflow orchestrator used to create DAGs that can run on a schedule as well as in an event driven manner☆27Jul 10, 2026Updated 2 weeks ago
- Externalize Java application access to protected resources as log messages.☆46Jul 15, 2026Updated last week
- Small scripts to control a networked Bose audio system on Linux.☆14Jan 12, 2015Updated 11 years ago
- OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reductio…☆528Updated this week
- Interactive IPython Notebook to demonstrate OWASP ZAP's API and Scripting Functions - OWASP ZAP 2.8.0☆41Dec 8, 2022Updated 3 years ago
- holding data and processing code for the paper 'A Large-Scale Empirical Study on Vulnerability Distribution within Projects and the Lesso…☆20Jul 10, 2020Updated 6 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Software Component Verification Standard (SCVS)☆162Apr 1, 2025Updated last year
- A rule for the Maven enforcer plugin to check for vulnerable artifacts within a project.☆42Oct 13, 2020Updated 5 years ago
- Audit Dependency-Track findings and policy violations via policy as code☆44Updated this week
- Clojure interface for Jazzer☆15Jan 7, 2022Updated 4 years ago
- CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments☆386Updated this week
- a Python client to query the FIRST EPSS API☆11Sep 13, 2023Updated 2 years ago
- A Yocto meta-layer for generating CycloneDX SBOMs and automatically uploading them to Dependency Track.☆22May 24, 2024Updated 2 years ago