Go Vulnerabilities

Open-source Go projects categorized as Vulnerabilities

Top 16 Go Vulnerability Projects

Vulnerabilities
  1. vuls

    Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices

  2. InfluxDB

    InfluxDB – Built for High-Performance Time Series Workloads. InfluxDB 3 OSS is now GA. Transform, enrich, and act on time series data directly in the database. Automate critical tasks and eliminate the need to move data externally. Download now.

    InfluxDB logo
  3. clair

    Vulnerability Static Analysis for Containers

    Project mention: Dockerfile Best Practices: Building Efficient and Secure Containers | dev.to | 2024-08-16

    Regularly scan your Docker images for vulnerabilities using tools like Trivy or Clair.

  4. grype

    A vulnerability scanner for container images and filesystems

    Project mention: Deep Dive 🤿: Where Does Grype Data Come From? | dev.to | 2024-11-12
  5. CDK

    📦 Make security testing of K8s, Docker, and Containerd easier.

  6. bearer

    Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

    Project mention: 🛡️ Scan and Protect Any App in 5 Minutes with Bearer CLI (SAST for Everyone) | dev.to | 2025-04-20

    🧰 GitHub Repository: https://github.com/Bearer/bearer

  7. jaeles

    The Swiss Army knife for automated Web Application Testing

  8. copacetic

    🧵 CLI tool for directly patching container images!

    Project mention: ⚡ Secure your containers faster—without disrupting your workflow | dev.to | 2025-02-28

    # Define variables VERSION="0.9.0" URL="https://github.com/project-copacetic/copacetic/releases/download/v${VERSION}/copa_${VERSION}_linux_amd64.tar.gz" # Download, extract, cleanup, and move copa binary curl -L -o "copa_${VERSION}_linux_amd64.tar.gz" "$URL" && \ tar -xzf "copa_${VERSION}_linux_amd64.tar.gz" copa && \ rm "copa_${VERSION}_linux_amd64.tar.gz" && \ mv copa /usr/bin/

  9. Stream

    Stream - Scalable APIs for Chat, Feeds, Moderation, & Video. Stream helps developers build engaging apps that scale to millions with performant and flexible Chat, Feeds, Moderation, and Video APIs and SDKs powered by a global edge network and enterprise-grade infrastructure.

    Stream logo
  10. horusec

    Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

    Project mention: 🔐IaC Security Made Easy with Horusec: A SAST Approach🚀 | dev.to | 2025-04-20

    Horusec GitHub

  11. Open-Source-Security-Guide

    Open Source Security Guide. Learn all about Security Standards (FIPS, CIS, FedRAMP, FISMA, etc.), Frameworks, Threat Models, Encryption, and Benchmarks.

  12. huskyCI

    Performing security tests inside your CI

    Project mention: 🐶 Secure Your CI Pipeline in Minutes with HuskyCI (SAST for Multiple Languages) huskyci | dev.to | 2025-04-25

    git clone https://github.com/globocom/huskyCI.git cd huskyCI

  13. eraser

    🧹 Cleaning up images from Kubernetes nodes

  14. juicyurls

    CLI tool to scan URLs for suspicious keywords, extensions, paths, and hidden files.

    Project mention: These Two Tools Helped Me Earn $40K in Bounties | dev.to | 2024-11-16

    Here’s the repo for juicyurls: https://github.com/alwalxed/juicyurls.

  15. bif

    Fairwinds Base Image Finder CLI (by FairwindsOps)

  16. depshub

    Dependency management toolkit: linter, updater, security scanner and more!

    Project mention: Build It Yourself | news.ycombinator.com | 2025-01-24

    I do use GitHub releases already https://github.com/DepsHubHQ/depshub/releases

    You can subscribe by clicking on Watch -> Custom -> Releases.

  17. debcvescan

    Debian CVE Scanner is self-contained CVE scanner for DEBIAN distributions written in golang.

  18. shadowspace-curzor

    Shadowspace is a cyberrange for active cybersecurity trainings and exercises. Curzor is one of the basics parts of that range - a web app containing multuple security vulnerabilities.

  19. SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020).

Go Vulnerabilities discussion

Log in or Post with

Go Vulnerabilities related posts

  • Building Secure Docker Images for Production - Best Practices

    4 projects | dev.to | 30 Jun 2023
  • Security starts before the production deployment

    2 projects | dev.to | 15 Jun 2023
  • A tool that scans repos and workout latest version and pull date of installed version + how to lock down repos (via some cluster policy?)

    2 projects | /r/kubernetes | 27 Apr 2023
  • Degree vs Certifications

    1 project | /r/sysadmin | 23 Mar 2023
  • Open Source Security Development

    1 project | /r/ITCareerQuestions | 22 Oct 2022
  • Open Source Security Guide

    1 project | /r/OSINT | 17 Oct 2022
  • Useful Security Guide

    1 project | /r/Cybersecurity101 | 29 Apr 2022
  • A note from our sponsor - InfluxDB
    www.influxdata.com | 10 Jul 2025
    InfluxDB 3 OSS is now GA. Transform, enrich, and act on time series data directly in the database. Automate critical tasks and eliminate the need to move data externally. Download now. Learn more →

Index

What are some of the best open-source Vulnerability projects in Go? This list will help you:

# Project Stars
1 vuls 11,656
2 clair 10,684
3 grype 10,204
4 CDK 4,272
5 bearer 2,334
6 jaeles 2,231
7 copacetic 1,360
8 horusec 1,237
9 Open-Source-Security-Guide 977
10 huskyCI 578
11 eraser 540
12 juicyurls 45
13 bif 36
14 depshub 32
15 debcvescan 27
16 shadowspace-curzor 7

Sponsored
InfluxDB – Built for High-Performance Time Series Workloads
InfluxDB 3 OSS is now GA. Transform, enrich, and act on time series data directly in the database. Automate critical tasks and eliminate the need to move data externally. Download now.
www.influxdata.com