
vexhub
Aggregates Vulnerability Exploitability eXchange (VEX) documents from open-source projects. Organizes by PURL for automated security tool integration.

Aggregates Vulnerability Exploitability eXchange (VEX) documents from open-source projects. Organizes by PURL for automated security tool integration.

Computes a criticality score for open source projects from repository, contributor, and dependency metrics to prioritize security improvements.

Forked from https://gitlab.alpinelinux.org/kaniini/secfixes-tracker

Collect VEX documents and update VEX Hub

GitHub Actions Pipeline Enumeration and Attack Tool

Tool to identify the best mechanisms for privately disclosing a security vulnerability for a package/project.

A multifaceted security tool which leverages Public GitHub REST APIs for OSINT, Forensics, Pentesting and more.

Scans GitHub Actions CI/CD workflows for security vulnerabilities, indexes findings into a Neo4j graph database, and provides a query library for…

CVE-2024-38526 - Polyfill Scanner

Asset-wide detection tool for identifying jsPDF usage related to CVE-2025-68428 Detection only — no exploitation

Find log4j for CVE-2021-44228 on some places * Log4Shell