nowfound

Alternatives

Products that do what VulnXplorer does

Map your stack. See every vulnerability. Fix what matters.

  1. 1

    An open source security scanner for Visual Studio Code

    2020

  2. 2

    Track your products. We’ll watch the vulnerabilities.

    Dec 2025 · vulntracker.io

  3. 3

    Find vulnerabilities in open-source code.

    2016

  4. 4RV

    Thrilled to announce that very soon The List Of Vulnerabilities collected from multiple platforms including ( npm, Maven, Go, NuGet, PyPI, RubyGems, crates.io, Packagist, Linux, OSS-Fuzz ) will be live at https://vulert.com/vuln-list. In short we are making sure that no vulnerability is left unreported and your software/service is always protected from unexpected attacks. Who doesn’t know Vulert Yet: Vulert, without any integration, notifies you if a Security Issue is found in any of the open-source software you are relying upon. HOW DOES VULERT PROTECT YOU ? PRIVACY: You…

    2022

  5. 5
    Vulnr2

    Vulnerability Protection

    Apr 2026 · vulnr.app

  6. 6

    Search-Analyze-Remediate CVE's with ease

    Jan 2026 · cvedatabase.com

  7. 7

    Find your web app's vulnerabilities before attackers do

    Jul 2026 · sensagraph.com

  8. 8AC

    2021 · github.com

  9. 9

    Catch code vulnerabilities before they ship.

    Jul 2026 · vuln-shield.vercel.app

  10. 10VC
  11. 11

    Scan websites for real security issues in minutes

    May 2026 · vulnixsec.com

  12. 12MA
  13. 13

    better scans, cleaner UI, more accurate reports

    Feb 2026 · vulnwatch.tech

  14. 14

    Weekly CVE digest for exactly your stack — no noise.

    Jun 2026

  15. 15BB

    This is a simple single-file python program that can find basic XSS (cross-site scripting) vulnerabilities in a target url. Most XSS discovery tools use a payload refelection strategy in which payloads are injected in url parameters and the GET response is inspected for places where the payload content is reflected. This is a very low precision XSS detection strategy because most reflection does not support execution. This program uses a different approach, and instead opens the target url in a browser, tests alert(...) payloads directly in the browser context, and listens for an alert being…

    2024 · github.com

  16. 16VD

    Did you know that VSCode extensions run with full access to your system—including file system, network, and credentials? Worse, dozens of malicious extensions have already made it into the marketplace, silently compromising devices. I am a security researcher and student developer who ran into this problem myself. To help tackle this, I built a 100% free tool (no login required) that scans VSCode (and Cursor/Windsurf) extensions for: - Hidden malware and obfuscated code - Dangerous permissions and API misuse - Vulnerable dependencies and suspicious network connections Users have already…

    2025 · vscan.dev

  17. 17CV
  18. 18

    Cybersecurity audit and prevention

    Oct 2025

  19. 19

    Security, Network, Vulnerability Scanner

    Jul 2026 · shadowsecurityscanner.com

  20. 20CB

    AI agents now have impressive reasoning capabilities. This raises an important question: how dangerous are these AI agents at identifying & exploiting web vulnerabilities? We created CVE-bench to find out (I'm one contributor of 16). To our knowledge CVE-bench is the first benchmark using real-world web vulnerabilities to evaluate AI agents' cyberattack capabilities. We included 40 CVEs from NIST's database, focusing on critical-severity vulnerability (CVSS > 9.0). To properly evaluate agents’ attacks, we built isolated environments with containerization and identified 8 common attack…

    2025 · github.com

  21. 21

    Python CLI tool for rapid IOC analysis (IPs, Domains, CVEs)

    Jul 2026 · github.com

  22. 22RR

    I wanted a safer alternative to RegExp for TypeScript that uses a linear-time engine, so I built Regolith. Why: Many CVEs happen because TypeScript libraries are vulnerable to Regular Expression Denial of Service attacks. I learned about this problem while doing undergraduate research and found that languages like Rust have built-in protection but languages like JavaScript, TypeScript, and Python do not. This library attempts to mitigate these vulnerabilities for TypeScript and JavaScript. How: Regolith uses Rust's Regex library under the hood to prevent ReDoS attacks. The Rust Regex library…

    2025 · github.com

  23. 23

    Détectez les failles avant les hackers

    Jun 2026

  24. 24
    Gromio2

    Automated risk mapping for MSSPs and CISOs.

    13d ago · gromio.fr

Ranked by how close each launch is in meaning, then by votes. Refine with a description →