Skip to content
View jeremylong's full-sized avatar

Sponsors

@jpcmonster
@lastcmaster
@rieckpil
@darranl
@premium-minds
@LucaBlackDragon

Highlights

  • Pro

Organizations

@OWASP

Block or report jeremylong

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Pinned Loading

  1. dependency-check/DependencyCheck dependency-check/DependencyCheck Public

    OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.

    Java 6.7k 1.3k

  2. dependency-check/dependency-check-gradle dependency-check/dependency-check-gradle Public

    The dependency-check gradle plugin is a Software Composition Analysis (SCA) tool that allows projects to monitor dependent libraries for known, published vulnerabilities.

    Groovy 367 93

  3. open-vulnerability-clients open-vulnerability-clients Public

    Java library for working with available vulnerability data sources (GitHub Security Advisories, NVD, EPSS, CISA Known Exploited Vulnerabilities, etc.)

    Java 2

  4. open-vulnerability-cli open-vulnerability-cli Public

    A cli that can be used to query various online vulnerability sources such as the NVD or GHSA. The CLI and docker images can be used to mirror the NVD.

    Java 136 43

  5. malicious-dependencies malicious-dependencies Public

    Demonstrates how a malicious dependency could negatively impact the build output.

    Java 25 10