Git Product home page Git Product logo

MergeBase's Projects

contains-oss icon contains-oss

An Open Source Java tool to examine binary Java artifacts that we make available to clients and prospects. TAG_PRODUCTION, OWNER_KEN, DC_PUBLIC

csv-compare icon csv-compare

CSV-Compare is a tool for comparing vulnerability scans as reported in CSV files outputted by mergebase and OWASP-Dependency-Check tools. TAG_TOOL, OWNER_KEN, DC_PUBLIC

cve-2021-44228-apache-log4j-rce icon cve-2021-44228-apache-log4j-rce

Apache Log4j 远程代码执行 - A fork of the example exploit code for the Log4J vulnerability. Used for reference. TAG_TESTING, OWNER_KEN, DC_PUBLIC

defender-demo-shopizer icon defender-demo-shopizer

A shopping cart app (backend) for the Defender feature demo. Some modifications have been made for the purpose of the demo.

flower icon flower

Used for demoing commit graph capabilities. TAG_TESTING, OWNER_DELAN, DC_PUBLIC

jag-file-submission icon jag-file-submission

Generic File Submission API - published API from BC Government. TAG_TOOL, OWNER_KELLY, DC_PUBLIC

java2json icon java2json

Java 1.2 compatible JSON parser/formatter written as a single source file. This is Open Source. TAG_OS_TOOL, OWNER_KELLY, DC_PUBLIC

log4j-detector icon log4j-detector

A public open sourced tool. Log4J scanner that detects vulnerable Log4J versions (CVE-2021-44228, CVE-2021-45046, etc) on your file-system within any application. It is able to even find Log4J instances that are hidden several layers deep. Works on Linux, Windows, and Mac, and everywhere else Java runs, too! TAG_OS_TOOL, OWNER_KELLY, DC_PUBLIC

log4j-direct-example icon log4j-direct-example

Public testing data. Small Java project that depends directly on log4j-core-2.14.0.jar (to test SCA tools) TAG_TESTING, OWNER_KEN, DC_PUBLIC

log4j-samples icon log4j-samples

Public testing data. Samples of log4j library versions to help log4j scanners / detectors improve their accuracy for detecting CVE-2021-45046 and CVE-2021-44228. TAG_TESTING, OWNER_KEN, DC_PUBLIC

log4j-transitive-example icon log4j-transitive-example

Public testing data. Small Java project that depends indirectly on log4j-core-2.14.0.jar (to test SCA tools) TAG_TESTING, OWNER_KEN, DC_PUBLIC

madness icon madness

Public Testing Data. TAG_TESTING, OWNER_DELAN, DC_PUBLIC

mergebase-scan-action icon mergebase-scan-action

Repository for the MergeBase Scan Github action, which is available in the Github Marketplace. TAG_PRODUCTION, OWNER_DELAN, DC_PUBLIC

packages icon packages

A fork from a separate public repository of vulnerabilities JSON files containing vulnerable packages. TAG_VULN_DATA, OWNER_KEN, DC_PUBLIC

sample icon sample

Public testing data. TAG_TESTING, OWNER_KELLY, DC_PUBLIC

struts-demo icon struts-demo

Example of struts vulnerability. TAG_TESTING, OWNER_KELLY, DC_PUBLIC

struts-example icon struts-example

Example of struts vulnerability. TAG_TESTING, OWNER_KELLY, DC_PUBLIC

usn2json icon usn2json

usn2json - A published tool that converts mail archives to JSON. TAG_TOOL, OWNER_KELLY, DC_PUBLIC

vulnerability.direct icon vulnerability.direct

Sample dotnet project with direct dependencies on vulnerable NuGet components. TAG_TESTING, OWNER_KEN, DC_PUBLIC

vulnerability.transitive icon vulnerability.transitive

Sample dotnet project with transitive dependencies on vulnerable NuGet components. TAG_TESTING, OWNER_KEN, DC_PUBLIC

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.