SBOM analysis platform for storing, correlating, and querying software bill of materials and security advisories (CSAF/VEX, OSV, CVE) at scale. Exposes a correlation graph of vuln
-
Updated
Sep 1, 2026 - Rust
SBOM analysis platform for storing, correlating, and querying software bill of materials and security advisories (CSAF/VEX, OSV, CVE) at scale. Exposes a correlation graph of vuln
VulNova Observatory - a key-free threat-intelligence dashboard (Atlas CVEs, Pulse news, Flare advisories, Signal source health) extending the VulNova CETM platform
Vulnogram is a tool for creating Security Advisories and CVE ID information.
CISA ICS/OT advisories in one place — searchable triage UI, RSS, and JSON for equipment maintainers.
Cybersecurity and Infrastructure Security Agency — independent third-party profile of a public API surface, by API Evangelist. The Cybersecurity and Infrastructure Security Agency (CISA) is the United States federal civilian cybersecurity agency, part of the Department of Homeland Security. CISA reduces cybersecurity and physical security risk for
Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.2, purl, and vers.
❌ Cargo plugin for linting your dependencies 🦀
🛡 Public database of Elixir security advisories pulled from GitHub Advisory Database
Audit Composer & npm dependencies for known vulnerabilities and tell whether an available update actually leaves the vulnerable range.
Coordinated disclosure portfolio: information-exposure (CWE-200) advisories for open-source web apps
Import CherryTree-style JSON, build a linked Markdown vulnerability repository, fetch vulnerable and fixed Git trees, create deterministic patches/reports, optionally ask LMStudio to summarize advisories
deadsimple BSD Security Advisories and Announcements
To publicly communicate advisories about serious bugs in CosmWasm
Collection of legal threats against good faith Security Researchers; vulnerability disclosure gone wrong. A continuation of work started by @attritionorg
MCP tools for semantic search in github/advisory-database
Self-hosted monitor for BSI WID security advisories (various products)
A service that waits for security notices from wid.cert-bund.de and wid.lsi.bayern.de and sends configurable email notifications
Security advisories published by Enable Security
Security advisories from Microsoft, Palo Alto, and Splunk — all in one place.
This repository contains a few vulnerabilities that were found and reported during vulnerability assessments.
To associate your repository with the advisories topic, visit your repo's landing page and select "manage topics."