Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Exploit-Mapper — Vulnerability management platform that imports scanner reports, enriches with CISA KEV and Exploit-DB intelligence, and provides contextual risk scoring for prioritized remediation. | Kitploit
Tools/GitHubGitHub/jrokz2315/exploit-mapper
Vulnerability ScannersVulnerability AnalysisThreat Intelligence
GitHubjrokz2315/exploit-mapper

Exploit-Mapper

Vulnerability management platform that imports scanner reports, enriches with CISA KEV and Exploit-DB intelligence, and provides contextual risk scoring for prioritized remediation.

View Repository
178 months agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Exploit Mapper

A comprehensive vulnerability management platform that analyzes security scan reports, enriches vulnerability data with exploit intelligence, and provides actionable risk scoring for prioritized remediation.

License Node React

Features

  • Multi-Format Import: Support for CSV and Excel vulnerability reports from various scanners (Nessus, Qualys, Arctic Wolf, OpenVAS, and more)
  • Automatic Column Detection: Intelligent mapping of scanner-specific column names to standard fields
  • Exploit Enrichment: Automatic lookup against CISA KEV (Known Exploited Vulnerabilities) and Exploit-DB
  • Risk Scoring Engine: Contextual risk scores based on CVSS, exploit availability, and asset criticality
  • Manual Vulnerability Addition (Non-Systemic): The ability to manually add vulnerabilities to accept that a scanner cannot detect. Eg; Use of TLS v1 for App XYZ.
  • Interactive Dashboard: Real-time risk gauge, severity breakdowns, and trend analysis
  • Device Management: Track vulnerabilities by host/device with OS and criticality information
  • Remediation Tracking: Status workflow, assignment, and resolution tracking
  • User Authentication: Role-based access control (Admin, User, Viewer)
  • Secure by Design: OWASP-compliant file validation, PBKDF2 password hashing, session management

*** The use of the CVE Enrichment process on the first upload those slow down the upload process, It will only try to enrich vulnerabilities uploaded that are marked as exploitable from your scans but timing can vary significatly depending on the uploaded file size.*** Uploads

Dashboard

The dashboard provides an at-a-glance view of your security posture with:

  • Overall risk score gauge
  • Severity distribution charts
  • Top exploitable vulnerabilities
  • Remediation progress tracking

Vulnerability List

Browse, filter, and sort vulnerabilities by:

  • Severity, risk score, CVSS
  • Exploit availability
  • CISA KEV status
  • Host/device
  • Status (Open, In Progress, Resolved)

Vuln-list

Vulnerability Detail

Detailed view including:

  • Scanner recommendations
  • CISA KEV required actions
  • Attack scenarios
  • Related findings across devices
  • Remediation workflow

Vuln-details

Prerequisites

  • Node.js >= 18.0.0
  • npm >= 9.0.0
  • Git (for cloning the repository)
  • Modern web browser (Chrome, Firefox, Edge, Safari)

Installing Prerequisites

Windows

Option A: Using the installer

  1. Download Node.js LTS from https://nodejs.org
  2. Run the installer and follow the prompts
  3. Ensure "Add to PATH" is checked during installation
  4. Open a new Command Prompt or PowerShell and verify:
    node --version
    npm --version
    

Option B: Use a Stable Node Version (Recommended)

  1. Download nvm-windows https://github.com/coreybutler/nvm-windows)
  2. Run the installer and follow the prompts
nvm install 22.12.0
nvm use 22.12.0

Option C: Using winget (Windows Package Manager)

winget install OpenJS.NodeJS.LTS
winget install Git.Git

Option D: Using Chocolatey

choco install nodejs-lts
choco install git
macOS

Using Homebrew:

brew install node
brew install git

Or download the installer from https://nodejs.org

Verify installation:

node --version
npm --version
Linux (Ubuntu/Debian)
# Using NodeSource repository for latest LTS
curl -fsSL https://deb.nodesource.com/setup_lts.x | sudo -E bash -
sudo apt-get install -y nodejs git

# Verify
node --version
npm --version

Installation

1. Clone the Repository

macOS / Linux:

git clone https://github.com/jrokz2315/exploit-mapper.git
cd exploit-mapper

Windows (Command Prompt):

git clone https://github.com/jrokz2315/exploit-mapper.git
cd exploit-mapper

Windows (PowerShell):

git clone https://github.com/jrokz2315/exploit-mapper.git
cd exploit-mapper

2. Install Dependencies

All platforms:

npm run install:all

Or install manually:

macOS / Linux:

npm install
cd server && npm install
cd ../client && npm install
cd ..

Windows (Command Prompt):

npm install
cd server && npm install
cd ..\client && npm install
cd ..

Windows (PowerShell):

npm install
cd server; npm install
cd ..\client; npm install
cd ..

Note (Windows): If you encounter errors with better-sqlite3, you may need to install the Windows build tools:

npm install --global windows-build-tools

Or install Visual Studio Build Tools with the "Desktop development with C++" workload from https://visualstudio.microsoft.com/visual-cpp-build-tools/

3. Start the Application

Development mode (with hot reload) — all platforms:

npm run dev

This starts both the backend server (port 3000) and frontend dev server (port 5173).

Production mode — all platforms:

# Build the client
npm run build

# Start the server
npm start

4. Access the Application

Open your browser and navigate to:

  • Development: http://localhost:5173
  • Production: http://localhost:3000

5. Default Login

On first run, a default admin account is created:

  • Username: admin
  • Password: Admin123!

You will be prompted to change this password on first login.

Project Structure

exploit-mapper/
├── client/                 # React frontend
│   ├── src/
│   │   ├── components/     # Reusable UI components
│   │   ├── pages/          # Page components
│   │   └── App.jsx         # Main app component
│   ├── package.json
│   └── vite.config.js
├── server/                 # Express backend
│   ├── src/
│   │   ├── db/             # Database schema and connection
│   │   ├── middleware/     # Auth middleware
│   │   ├── routes/         # API routes
│   │   └── services/       # Business logic
│   ├── data/               # SQLite database (gitignored)
│   ├── uploads/            # Temporary upload storage (gitignored)
│   └── package.json
├── package.json            # Root package with scripts
├── .gitignore
├── LICENSE
├── CONTRIBUTING.md
└── README.md

API Endpoints

Authentication

MethodEndpointDescription
POST/api/auth/loginUser login
POST/api/auth/logoutUser logout
GET/api/auth/meGet current user
POST/api/auth/change-passwordChange password

Dashboard

MethodEndpointDescription
GET/api/dashboard/summaryDashboard metrics
GET/api/dashboard/riskRisk breakdown
GET/api/dashboard/trendsHistorical trends
GET/api/dashboard/executive-summaryExecutive summary
Download Tool