
osv-scanner
Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Log4J Updater Bash Script to automate the framework update process on numerous machines and prevent the CVE-2021-44228

Hardening Script for Linux Servers/ Secure LAMP-LEMP Deployer/ CIS Benchmark

Runtime-aware SCA — proves which CVEs are actually reachable, not just installed.

Vulnerability scanner based on vulners.com audit API

Dependency-free static analyzer for zk circuit soundness bugs in o1js/Mina zkApps and Noir circuits

Open-source, cross-platform, multi-purpose security auditing tool

Forked from https://gitlab.alpinelinux.org/kaniini/secfixes-tracker

CLI tool for analyzing Go package capabilities by tracing transitive calls to privileged standard library operations, enabling supply chain risk…

System utility that identifies and restarts daemons using outdated libraries after package upgrades to maintain security. Supports containers and…


Automated static code analysis framework integrated with SonarQube for early vulnerability detection in source code by scanning Git repositories…

Suppress vulnerabilities applying Kubernetes context to scans

Audits GitLab projects against the CIS GitLab Benchmark via read-only API checks, generating JSON reports on compliance and hardening recommendations.

Give coding agents a disposable Linux VM, not your laptop

Offline checker for Thymeleaf CVE-2026-40477 / CVE-2026-41901 — tells you which of the two CVSS 9.0 SSTI flaws you are exposed to, and whether your…

CVE-2025-55182 Detector. Find which of your GitHub repositories are exposed to the critical React/Next.js RCE vulnerability and generate a clean…

Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulnerable…