
loguccino
Scan and patch tool for CVE-2021-44228 and related log4j concerns.

Scan and patch tool for CVE-2021-44228 and related log4j concerns.
OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.

Aggregates Vulnerability Exploitability eXchange (VEX) documents from open-source projects. Organizes by PURL for automated security tool integration.

A specialized vulnerability scanner designed to detect CVE-2024-38526, the Polyfill.io Supply Chain Attack, helping organizations identify and…

Discover and remediate Log4Shell vulnerability [CVE-2021-45105]

Go-based automation tool that scans GitHub repositories for vulnerable Next.js versions (CVE-2025-66478) and automatically creates pull requests with…

An open source tool focused on software supply chain security. 墨菲安全专注于软件供应链安全,具备专业的软件成分分析(SCA)、漏洞检测、专业漏洞库。

Audits Python environments, requirements files and dependency trees for known security vulnerabilities, and can automatically fix them