cwe
Here are 148 public repositories matching this topic...
Client-side navigator that maps relationships across CVE, CWE, CAPEC, ATT&CK and D3FEND. Enter any security framework ID and instantly traverse the full chain: from vulnerability to weakness to attack pattern to technique to defense.
-
Updated
Mar 9, 2026 - HTML
An explorer that allows you to see the multiple relationships of a CWE (and their details)
-
Updated
Feb 5, 2025 - TypeScript
Payload collection for web application security testing
-
Updated
Apr 20, 2026
An AI-powered code vulnerability scanner in Python. It can scan code locally using Ollama or use cloud-based AI models via API. Built as an experiment in combining local and remote AI for security analysis.
-
Updated
Jan 24, 2026 - Python
A webapp showing current cybersecurity vulnerabilities and making them understandable for non-technical users.
-
Updated
Mar 27, 2026 - Python
OWASP Top 10 + CWE Top 25 security audit for Claude Code
-
Updated
Mar 21, 2026
Turn established vulnerability and weakness taxonomies into a Ghostwriter bulk-upload CSV.
-
Updated
May 17, 2026 - Python
Delta is an Exploit Discovery Tool designed to search for vulnerabilities based on CVE (Common Vulnerabilities and Exposures) or CWE (Common Weakness Enumeration)
-
Updated
Jun 4, 2025 - Python
AXIS-26 v0.0.1: risk-gated spec-driven development for AI coding agents. Includes the AXIS specification, Claude Code/Codex plugin, portable commands, lifecycle gates, EARS requirements, CWE checks, evals, and adapters for Cursor, Gemini CLI, and Aider.
-
Updated
May 9, 2026 - Shell
Security audit & vulnerability analysis of a retail interactive kiosk system. Educational case study — CWE-798, CWE-312, CWE-200, CWE-78, CWE-276.
-
Updated
Apr 1, 2026 - PHP
TypeScript client for the MITRE CWE API with a clean, chainable API. Supports weakness lookup, categories, views, and hierarchy navigation. Isomorphic (Node.js + browser), fully typed, and zero dependencies.
-
Updated
May 9, 2026 - TypeScript
A reusable GitLab CI/CD template for automated security scanning, including secrets detection (Gitleaks, Trufflehog), dependency vulnerabilities (Trivy), SAST (Semgrep, SonarQube), DAST (OWASP ZAP), and a consolidated security dashboard. Include this in your gitlab-ci.yml for DevSecOps.
-
Updated
Nov 19, 2025 - Shell
The Cybersecurity and Infrastructure Security Agency (CISA) is the United States federal civilian cybersecurity agency, part of the Department of Homeland Security.
-
Updated
May 19, 2026
Solo red team web app pentest against OWASP Juice Shop (BeCode Mission 00, May 2026). 15 vulnerabilities documented (3 CRITICAL, 3 HIGH, 5 MEDIUM, 4 LOW) across 7/10 OWASP Top 10 categories. Manual exploitation, CVSS v3.1 + MITRE ATT&CK mapped, 47-page PDF + structured findings index.
-
Updated
May 17, 2026
Improve this page
Add a description, image, and links to the cwe topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the cwe topic, visit your repo's landing page and select "manage topics."