Nmap NSE scripts that turn a service scan into CVEs, CVSS scores and known exploits — fingerprints software from HTTP responses and checks every detected CPE against the Vulners database.
-
Updated
Aug 18, 2026 - Lua
Nmap NSE scripts that turn a service scan into CVEs, CVSS scores and known exploits — fingerprints software from HTTP responses and checks every detected CPE against the Vulners database.
The CVE Binary Tool helps you determine if your system includes known vulnerabilities. You can scan binaries for over 350 common, vulnerable components (openssl, libpng, libxml2, expat and others), or if you know the components used, you can get a list of known vulnerabilities associated with an SBOM or a list of components and versions.
Streamline vulnerability patching with CVSS, EPSS, and CISA's Known Exploited Vulnerabilities. Prioritize actions based on real-time threat information, gain a competitive advantage, and stay informed about the latest trends.
A free and open vulnerabilities database and the packages they impact. And the tools to aggregate and correlate these vulnerabilities. Sponsored by NLnet https://nlnet.nl/project/vulnerabilitydatabase/ for https://www.aboutcode.org/ Chat at https://gitter.im/aboutcode-org/vulnerablecode Docs at https://vulnerablecode.readthedocs.org/
Official Python SDK for the Vulners vulnerability-intelligence API — search CVEs, exploits and advisories (CVSS/EPSS/KEV), audit software, Linux/Windows hosts and SBOMs, and stream the whole graph. Typed sync + async clients, 100% v3-compatible, with a built-in MCP server for AI agents.
Public Roadmap | huntr.dev
Vulnogram is the tool for reserving, managing, and publishing CVEs. Get started at vulnogram.org or deploy Docker edition for full enterprise features.
CVE-2026-9830 Proof of Concept
PoC_CVEs
PatrowlHears - Vulnerability Intelligence Center / Exploits
Extensible framework for analyzing publicly available information about vulnerabilities
CVSS (Common Vulnerability Scoring System) Calculator CVSSv3.1
Daily archiver & triage issue creator for new releases of CISA's Known Exploited Vulnerabilities list
The ISRA security-risk-assessment-tool project is an Electron based application used to do security risk assessments at a technical level
A community-curated, verified collection of Proof-of-Concept exploits for CVEs disclosed in 2026.
Add a description, image, and links to the cvss topic page so that developers can more easily learn about it.
To associate your repository with the cvss topic, visit your repo's landing page and select "manage topics."