nodejs / security-advisories
Security advisories for Node.js and the JavaScript ecosystem.
☆41Updated 3 years ago
Alternatives and similar repositories for security-advisories:
Users that are interested in security-advisories are comparing it to the libraries listed below
- Discussion area for security aspects of ECMAScript☆64Updated 7 years ago
- A zoo for malicious NPM packages☆20Updated 2 years ago
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC☆32Updated 4 months ago
- Find security vulnerabilities in open source npm packages while you code☆205Updated 3 years ago
- Security design pattern support for Node.js☆24Updated 6 years ago
- npm audit security report☆35Updated last week
- Make it easy to probe the strengths and weaknesses of a hardened Node.js stack☆19Updated 6 years ago
- Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]☆42Updated 10 months ago
- Secure Contexts, but with _more_ secureness!☆20Updated last year
- A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.☆56Updated 8 months ago
- Some thoughts on how Node.js might respond to a changing security environment☆173Updated 6 years ago
- Policy management tool for Node.js☆22Updated 2 years ago
- Grunt plugin for retire.☆88Updated last year
- A developer-friendly secrets detection tool for CI and pre-commit hooks based on Yelp's detect-secrets☆50Updated 3 years ago
- rules for scanjs functionality☆28Updated 3 years ago
- An npm beholder that deceives you☆31Updated 4 months ago
- A Modest Content Security Proposal☆40Updated 3 years ago
- Programmatically fetch security vulnerabilities with one or many strategies (NPM Audit, Sonatype, Snyk, Node.js DB).☆30Updated this week
- ESLint Plugin focused on common security issues and misconfigurations.☆40Updated 2 months ago
- Generate a text for a GitHub issue announcing a Node.js working group meeting☆12Updated 4 months ago
- Static analysis tool for javascript code based. Scanjs uses Esprima to convert sources to AST, then walks AST looking for patterns.☆54Updated 11 years ago
- Problem statement and basic mitigations for ephemeral fingerprinting on the web.☆21Updated 4 years ago
- remark preset to configure remark-lint with settings for nodejs/node☆16Updated this week
- A fork of Node.js to hash out ideas related to ESModules☆73Updated 5 years ago
- Node.js Ecosystem Security Working Group☆522Updated this week
- ☆49Updated last week
- TSLint security rules☆69Updated 4 years ago
- A documentation and tracking project with the goal of making package management systems more secure.☆50Updated 4 years ago
- Inject JS to the DOM to find vulnerable JavaScript libraries☆10Updated 7 months ago