Skip to content
Change the repository type filter

All

    Repositories list

    • lunasec

      Public
      LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect…
      TypeScript
      1661.5k907Updated May 2, 2024May 2, 2024
    • Intentionally vulnerable apps that are used to test LunaTrace.
      JavaScript
      5307Updated Mar 2, 2023Mar 2, 2023
    • An intentionally vulnerable Javascript app containing notable vulnerabilities in its dependencies.
      JavaScript
      351911Updated Jan 26, 2023Jan 26, 2023
    • dvja

      Public
      Damn Vulnerable Java (EE) Application
      Java
      524000Updated Jan 5, 2023Jan 5, 2023
    • grype

      Public
      A vulnerability scanner for container images and filesystems
      Go
      736000Updated Dec 29, 2022Dec 29, 2022
    • A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC
      TypeScript
      11000Updated Nov 17, 2022Nov 17, 2022
    • Dockerized POC for CVE-2022-42889 Text4Shell (with LunaSec research notes)
      Java
      31100Updated Oct 20, 2022Oct 20, 2022
    • Generate a Snyk dependency tree from package-lock.json or yarn.lock file
      TypeScript
      29000Updated Sep 14, 2022Sep 14, 2022
    • This is a dockerized application that is vulnerable to the Spring4Shell vulnerability (CVE-2022-22965).
      Python
      23810701Updated Aug 4, 2022Aug 4, 2022
    • syft

      Public
      CLI tool and library for generating a Software Bill of Materials from container images and filesystems
      Go
      756100Updated Apr 27, 2022Apr 27, 2022
    • Spring Boot web application vulnerable to Log4Shell (CVE-2021-44228) and the possible Spring RCE vulnerability.
      Java
      5533400Updated Mar 31, 2022Mar 31, 2022
    • Yarn 2 plugin to create a separate lockfile per workspace
      JavaScript
      12000Updated Apr 15, 2021Apr 15, 2021