DependencyCheck
OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in app
About this project
Dependency-Check Dependency-Check is a Software Composition Analysis (SCA) tool that attempts to detect publicly disclosed vulnerabilities contained within a project's dependencies. It does this by determining if there is a Common Platform Enumeration (CPE) identifier for a given dependency. If found, it will generate a report linking to the associated CVE entries. Documentation and links to production binary releases can be found on the github pages. Additionally, more information about the architecture and ways to extend dependency-check can be found on the [wiki]. Notice This product uses the NVD API but is not endorsed or certified by the NVD. Mandatory Upgrade to 12.1.0+ Due to…
Technologies
Project health
GitHub
Reviews
Built by
Maintain dependency-check/DependencyCheck? Claiming verifies admin access through your GitHub account and gives you control of this listing.