#1Dependency scanning, SBOM generation, package integrity, and supply chain risk tools.
Kitploit recommended

Scans liblzma from xu-utils for backdoor (CVE-2024-3094)

Analyzes and demonstrates the webpack CVE-2024-43788 vulnerability, providing detection and exploitation insights for security researchers.

Patch for zlib addressing CVE-2018-25032 in AOSP10 r33, providing a fix for the identified vulnerability.

vulnerabilities, CVE-2022-41903, and CVE-2022-23521, that affect versions 2.39 and older. Git for Windows was also patched to address an additional,…

go CVE-2023-24538 patch issue resolver - Kirkstone

simple application with a (unreachable!) CVE-2022-45688 vulnerability

simple application with a (unreachable!) CVE-2022-45688 vulnerability

Java library for creating and extracting archives (ZIP, tar, JAR) with integrated security patch for a reported vulnerability, used as a dependency…

simple application with a (unreachable!) CVE-2022-45688 vulnerability

Java library for creating and extracting archives (ZIP, TAR, JAR) with support for various compression formats. Note: version 3.5 contains a fix for…

Context of CVE-2021-26291 minimal replicator

A script to change OpenSSL versions on Ubuntu to 1.1.1q to protect against CVE-2022-2097.

C library for stream-oriented XML parsing, providing handlers for parsing structures in documents. Includes xmlwf tool and supports UTF-16 encoding.

Check with Maven on CVE-2011-1475

General-purpose data compression library implementing the zlib, deflate, and gzip formats, with thread-safe functions and cross-platform build…

Portable zipfile extraction utility with broad OS support, decryption, and security fixes for path traversal and symlink vulnerabilities.

Buildless dependency auditor that scans 10 ecosystems offline, reporting CVEs prioritized by CISA KEV and EPSS, EOL packages, licenses, committed…