snyk / nexus-snyk-security-plugin
Allow Nexus users to test their applications against the Snyk vulnerability database
☆17Updated last week
Alternatives and similar repositories for nexus-snyk-security-plugin:
Users that are interested in nexus-snyk-security-plugin are comparing it to the libraries listed below
- Test and monitor your projects for vulnerabilities with Maven. This plugin is officially maintained by Snyk.☆79Updated 5 months ago
- CycloneDX SBOM Model and Utils for Creating and Validating BOMs☆84Updated this week
- Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects☆305Updated last month
- Evaluation Framework for Dependency Analysis (EFDA)☆43Updated 2 years ago
- An opinionated scaffolding framework that jumpstarts Java projects with an API-first design, secure defaults, and minimal dependencies☆62Updated last week
- ☆179Updated this week
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆112Updated last year
- Home page of project "KB"☆117Updated last month
- NVD, Ubuntu, Alpine☆416Updated this week
- Scanning and analysis for Black Duck SCA products.☆166Updated this week
- Collection of community-driven CodeQL query, library and extension packs☆129Updated this week
- Parse and compare all the package versions and all the ranges. From debian, npm, pypi, ruby and more. Process all the version range specs…☆32Updated 3 months ago
- Plugin for supporting SPDX in a Maven build.☆48Updated this week
- A simple Java command-line utility to mirror the entire contents of VulnDB.☆44Updated last month
- Java/JVM implementation of the package url spec☆24Updated 7 months ago
- SARIF Microsoft Visual Studio Code extension☆113Updated 3 months ago
- Java libraries for working with available vulnerability data sources (GitHub Security Advisories, NVD, EPSS, CISA Known Exploited Vulnera…☆133Updated this week
- Starter workspace to use with the CodeQL extension for Visual Studio Code.☆508Updated this week
- Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages☆127Updated 2 years ago
- The SCANOSS SBOM Workbench graphical user interface to scan and audit your source code.☆47Updated last week
- xAST评价体系,让安全工具不再“黑盒”. The xAST evaluation benchmark makes security tools no longer a "black box".☆366Updated last week
- Global Security Database☆315Updated 9 months ago
- 《深入理解SAST静态应用安全测试》Static Application Security Testing.☆330Updated 9 months ago
- SPDX Tools☆132Updated last year
- Test and monitor your projects for vulnerabilities with Jenkins. This plugin is officially maintained by Snyk.☆58Updated 5 months ago
- Black Duck Docker Orchestration Files/Documentation☆121Updated last month
- Java taint propagation for java. Define tainted sources, sanitizer methods and sinks via aspects.☆28Updated 6 years ago
- A utility for validating and parsing Common Platform Enumeration (CPE) v2.2 and v2.3 as originally defined by MITRE and maintained by NIS…☆47Updated 3 weeks ago
- GitHub Satellite 2020 workshops on finding security vulnerabilities with CodeQL for Java/JavaScript.☆209Updated 4 months ago
- CodeQL database manager☆48Updated last year