The CVE Binary Tool helps you determine if your system includes known vulnerabilities. You can scan binaries for over 350 common, vulnerable components (openssl, libpng, libxml2, expat and others), or if you know the components used, you can get a list of known vulnerabilities associated with an SBOM or a list of components and versions.
Repositories
ossf repositories
ossf/cve-bin-toolPython
(1,738 stars) (646 forks) (4 indexed issues) (4 open good first issues)
Global CyberSecurity Skills Framework
(6 stars) (2 forks) (0 indexed issues) (0 open good first issues)
Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption
(116 stars) (44 forks) (2 indexed issues) (2 open good first issues)
Website and API for OpenSSF Scorecard
(29 stars) (30 forks) (8 indexed issues) (8 open good first issues)
Our objective is to enable open source maintainers, contributors and end-users to understand and make decisions on the provenance of the code they maintain, produce and use.
(207 stars) (38 forks) (0 indexed issues) (0 open good first issues)