Vulnerability scanner which uses the data provided by https://osv.dev. osv-scanner generates a list of dependencies from a project's lockfiles, SBOMs, container images or installed packages, and matches them against the OSV database of known vulnerabilities.

WWW: https://google.github.io/osv-scanner/
