
codeql
CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

Language server for YARA rule development, providing code completion, linting, formatting, navigation, and debugging support inside IDEs.


jackson-databind 2026 年 11 条安全公告自查:扫源码注解降噪,告诉你真中几条;逐条求交集给出真正到位的版本(2.18.9/2.21.5/3.1.5,不是 advisory 上最常见的 2.21.4) CVE-2026-54515 / CVE-2026-54512

UT based automated fuzz driver generation

Indexes C/C++ build artifacts into a queryable whole-program database, exposing AST, token, and IR-level APIs for code auditing and vulnerability…

RIPS - A static source code analyser for vulnerabilities in PHP scripts

Go static analysis tool that checks for security issues using an AST.

Matt.Net is a simple GUI wrapper around Microsoft's CAT.NET Code Auditing Tool

👮 👊 RegEx Denial of Service (ReDos) Scanner

OpenAI's Codex Security CLI and TypeScript SDK for finding, validating, and fixing security vulnerabilities. npm:…





obride with CVE-2018-25075