vulnerability-scanner

Solid

Security vulnerability scanning for dependencies and code, with CVE database checking and risk assessment

AI & Automation 1,160 stars 71 forks Updated today MIT

Install

View on GitHub

Quality Score: 96/100

Stars 20%
100
Recency 20%
100
Frontmatter 20%
70
Documentation 15%
100
Issue Health 10%
50
License 10%
100
Description 5%
100

Skill Content

# Vulnerability Scanner Skill Performs comprehensive security vulnerability scanning for dependencies and code, integrating with CVE databases and security platforms to identify, assess, and prioritize security risks for migration planning. ## Purpose Enable comprehensive security vulnerability detection for: - CVE database checking for known vulnerabilities - Severity assessment and prioritization - Exploitability analysis - Patch availability checking - Transitive vulnerability chain mapping - Risk scoring and remediation guidance ## Capabilities ### 1. CVE Database Checking - Query NVD (National Vulnerability Database) - Check GitHub Advisory Database - Query vendor-specific advisory databases - Cross-reference multiple CVE sources - Track CVE publication dates and updates ### 2. Severity Assessment - CVSS (Common Vulnerability Scoring System) scoring - Severity categorization (Critical, High, Medium, Low) - Environmental score adjustments - Temporal score analysis - Impact assessment ### 3. Exploitability Analysis - Check for known exploits in the wild - Assess attack vector complexity - Evaluate privileges required - Analyze user interaction requirements - Track exploit maturity level ### 4. Patch Availability Checking - Identify available patches and fixes - Check for security advisories - Find upgrade paths to secure versions - Track vendor patch timelines - Monitor backport availability ### 5. Transitive Vulnerability Chain Mapping - Map vulnerability paths t...

Details

Author
a5c-ai
Repository
a5c-ai/babysitter
Created
4 months ago
Last Updated
today
Language
JavaScript
License
MIT

Similar Skills

Semantically similar based on skill content — not just same category

AI & Automation Solid

scanning-for-vulnerabilities

This skill enables comprehensive vulnerability scanning using the vulnerability-scanner plugin. It identifies security vulnerabilities in code, dependencies, and configurations, including CVE detection. Use this skill when the user asks to scan for vulnerabilities, security issues, or CVEs in their project. Trigger phrases include "scan for vulnerabilities", "find security issues", "check for CVEs", "/scan", or "/vuln". The plugin performs static analysis, dependency checking, and configuration analysis to provide a detailed vulnerability report.

2,274 Updated today
jeremylongshore
AI & Automation Listed

vulnerability-scanner

Advanced vulnerability analysis principles. OWASP 2025, Supply Chain Security, attack surface mapping, risk prioritization.

335 Updated today
aiskillstore
AI & Automation Featured

vulnerability-scanner

Advanced vulnerability analysis principles. OWASP 2025, Supply Chain Security, attack surface mapping, risk prioritization.

39,350 Updated today
sickn33
AI & Automation Solid

vulnerability-scanner

Advanced vulnerability analysis principles. OWASP 2025, Supply Chain Security, attack surface mapping, risk prioritization.

27,705 Updated today
davila7
DevOps & Infrastructure Listed

security-analyzer

Comprehensive security vulnerability analysis for codebases and infrastructure. Scans dependencies (npm, pip, gem, go, cargo), containers (Docker, Kubernetes), cloud IaC (Terraform, CloudFormation), and detects secrets exposure. Fetches live CVE data from OSV.dev, calculates risk scores, and generates phased remediation plans with TDD validation tests. Use when users mention security scan, vulnerability, CVE, exploit, security audit, penetration test, OWASP, hardening, dependency audit, container security, or want to improve security posture.

335 Updated today
aiskillstore