Skip to content
KitploitKITPLOIT
工具博客
Log in
提交
工具博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

订阅源联系隐私© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
vulnx — 用于探索漏洞数据的现代命令行工具,具备强大的搜索、过滤和分析能力。 | Kitploit
工具/GitHubGitHub/projectdiscovery/vulnx
OSINT (开源情报)侦察漏洞扫描器漏洞分析信息收集威胁情报
GitHubprojectdiscovery/vulnx

vulnx

用于探索漏洞数据的现代命令行工具,具备强大的搜索、过滤和分析能力。

查看仓库
2.6k192111个月前Kitploit 审核通过

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享

vulnx

MIT License Go Report Card Go Reference GitHub Release Twitter Follow Discord Starlog Deep Dive

用于探索漏洞数据的现代 CLI,支持强大的搜索、过滤和分析功能

image

快速开始

# 1. Get vulnx
go install github.com/projectdiscovery/vulnx/v2/cmd/vulnx@latest

# 2. Explore commands
vulnx --help
vulnx search --help

# 3. Start exploring vulnerabilities (no API key required)
vulnx filters                          # See all available search fields
vulnx search apache                    # Basic search (subject to rate limits)

# 4. Set up your API key (recommended to avoid rate limits)
vulnx auth                              # Get free API key at https://cloud.projectdiscovery.io

# 5. Enhanced exploration with higher limits
vulnx search apache                    # No rate limits
vulnx id CVE-2021-44228               # Faster responses

vulnx 能做什么

精确搜索漏洞:

vulnx search "severity:critical && is_remote:true"
vulnx search "apache || nginx" --limit 20
vulnx search "cvss_score:>8.0 && cve_created_at:2024"

获取详细漏洞信息:

vulnx id CVE-2021-44228
vulnx id CVE-2024-1234 --json

分析漏洞模式:

vulnx analyze --fields severity
vulnx analyze --fields affected_products.vendor

核心命令

命令用途示例
search使用高级过滤器查找漏洞vulnx search "apache && severity:high"
id获取特定 CVE 的详情vulnx id CVE-2021-44228
filters列出所有可用的搜索字段和过滤器vulnx filters
analyze按字段聚合数据vulnx analyze -f severity
auth配置 API 访问vulnx auth
version显示版本信息并检查更新vulnx version
update将 vulnx 更新到最新版本vulnx update
healthcheck测试连通性vulnx healthcheck

基本选项

输出格式:

vulnx search "apache" --json              # Machine-readable JSON
vulnx search "apache" --output results.json  # Save to file
vulnx search "apache" --silent            # Quiet output

搜索控制:

vulnx search "apache" --limit 50          # Get 50 results
vulnx search "apache" --sort-desc cvss_score  # Sort by CVSS score
vulnx search "apache" --fields cve_id,severity  # Specific fields only

高级搜索:

vulnx search --term-facets severity=5,tags=10 "apache"
vulnx search --range-facets numeric:cvss_score:high:8:10 "remote"
vulnx search --highlight "apache"            # Enable search highlighting
vulnx search --facet-size 20 "nginx"         # More facet buckets
vulnx search --detailed "xss"                # Detailed output like 'id' command

发现可用字段

探索你可以搜索的内容:

vulnx filters                           # Show all available search fields
vulnx filters --json                    # Machine-readable field list
vulnx filters --output fields.json      # Save field info to file

filters 命令显示所有可搜索字段的详细信息,包括:

  • 字段名称和数据类型
  • 描述和示例
  • 字段是否支持排序和分面
  • 特定字段的可用枚举值
  • 搜索分析器类型

示例输出:

Field: severity
Data Type: string
Description: Vulnerability severity level (e.g., critical, high, medium, low, info)
Can Sort: Yes
Facet Possible: Yes
Search Analyzer: keyword-lower
Examples: severity:critical, severity:high
Enum Values: critical, high, medium, low, info, unknown

Total: 69 filters available

使用此命令发现新的搜索可能性,并在构建复杂查询前了解字段语法。

常见搜索模式

查找高风险漏洞:

vulnx search "severity:critical && is_remote:true && is_kev:true"
vulnx search "cvss_score:>8.0 && cve_created_at:>=2024"  # High CVSS from 2024
vulnx search "is_kev:true && age_in_days:<90"            # Recent KEV exploits

按技术搜索:

vulnx search "apache"                     # Apache vulnerabilities
vulnx search "apache || nginx"          # Multiple technologies
vulnx search "affected_products.vendor:microsoft"  # By vendor

按严重性和分数过滤:

vulnx search "severity:high"              # High severity
vulnx search "cvss_score:>7.0"            # CVSS score above 7
vulnx search "epss_score:>0.8"            # High EPSS score

基于时间的搜索:

vulnx search "cve_created_at:>=2024"      # Published in 2024 or later
vulnx search "cve_created_at:>=2024-01-01 && cve_created_at:<2024-07-01"  # First half of 2024
vulnx search "age_in_days:<30"            # Recent vulnerabilities (last 30 days)

查找可利用的漏洞:

vulnx search "is_poc:true"                # Has proof of concept
vulnx search "is_kev:true"                # Known exploited vulns
vulnx search "is_template:true"           # Has Nuclei templates
vulnx search --detailed "log4j"          # Detailed analysis of specific vuln

过滤器标志

过滤器标志参考

标志简写描述示例
--product-p按产品过滤--product apache,nginx
--vendor按供应商过滤--vendor microsoft,oracle
--severity-s按严重性过滤--severity critical,high
--tags按标签过滤--tags rce,injection
--cvss-score按 CVSS 分数过滤--cvss-score ">8.0"
--epss-score按 EPSS 分数过滤--epss-score ">0.8"
--vuln-age-a按期限过滤--vuln-age "<30"
--vuln-type按漏洞类型过滤--vuln-type sql_injection
--kev仅 KEV 漏洞--kev
--template-t具有 Nuclei 模板--template
--poc具有概念验证--poc
--hackeroneHackerOne 已报告--hackerone
--remote-exploit可远程利用--remote-exploit
--vuln-status按漏洞状态过滤--vuln-status confirmed

搜索控制标志

标志简写描述示例
--detailed详细输出,如 'id'--detailed
--highlight启用搜索高亮--highlight
--limit-n结果数量--limit 50
--offset分页偏移--offset 100
--sort-asc升序排序--sort-asc cvss_score
--sort-desc降序排序--sort-desc cve_created_at
--fields选择特定字段--fields cve_id,severity
--term-facets计算词项分面--term-facets severity=5
--range-facets计算范围分面--range-facets numeric:cvss_score:high:8:10
--facet-size分面桶数量--facet-size 20

产品和供应商过滤:

vulnx search --product apache,nginx     # Filter by products (searches both vendor and product fields)
vulnx search --vendor microsoft,oracle  # Filter by vendors only
vulnx search "NOT apache"               # Exclude products using query syntax
vulnx search "NOT affected_products.vendor:microsoft"  # Exclude vendors using query syntax
下载工具