The 'is-website-vulnerable' tool is designed to detect publicly known security vulnerabilities in a website's frontend JavaScript libraries. It scans the website and checks the JavaScript libraries used against a database of known vulnerabilities, provided by Snyk. The tool can be used through the command line, Docker, or a GitHub Action, and it provides detailed information about any vulnerabilities found. It does not require any special setup or configuration, and it can be easily integrated into existing development workflows.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
tfsec is being replaced by Trivy, a more comprehensive open-source security solution
A vulnerability management platform that centralizes security assessment workflows, integrates multiple security tools, and provides collaboration features for security teams.
Script to find exploits for vulnerable software packages on Linux systems using an exploit database.
A free and open-source deliberately insecure web application for security enthusiasts, developers, and students to discover and prevent web vulnerabilities.
Simple script to check a domain's email protections and identify vulnerabilities.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.