
electronegativity
AST-based static analysis tool that detects security misconfigurations and anti-patterns in Electron applications, helping developers and auditors…

AST-based static analysis tool that detects security misconfigurations and anti-patterns in Electron applications, helping developers and auditors…

This repository contains potential security patches for the Magento APSB22-48 and CVE-2022-35698 security vulnerability

Fastest filesystem scanner for log4shell (CVE-2021-44228, CVE-2021-45046) and other vulnerable (CVE-2017-5645, CVE-2019-17571, CVE-2022-23305,…

Created after the disclosure of CVE-2022-22965 and CVE-2022-22963. Bash script that detects Spring Framework occurrences in your projects and…

Provides a patched version of jQuery 1.12.2 that mitigates CVE-2019-11358 prototype pollution vulnerability, with test examples for verification.

Discover Log4Shell vulnerability [CVE-2021-44832]

Rapidly scan filesystems for Java programs potentially vulnerable to Log4Shell (CVE-2021-44228) or "that Log4j JNDI exploit" by inspecting the class…

Simple tool for scanning entire directories for attempts of CVE-2021-44228

Module for PrestaShop 1.7.X to fix CVE-2023-28447 vulnerability (Smarty XSS)

Spring Web 5.x with `org.springframework.remoting` package removed, to fix CVE-2016-1000027.

Magento 2 patch for CVE-2022-24086, CVE-2022-24087. Fix the RCE vulnerability and related bugs by performing deep template variable escaping. If you…

Automated detection of vulnerable domain configurations and subdomain takeover risks across cloud environments, with continuous monitoring and…

Subdomain takeover vulnerability checker

Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.…

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…

🛡️ Open-source and cloud-native Web Application Firewall (WAF)