OSS Security KBlive

OSS Security Knowledge Base

Tracking whether popular open-source packages have been security audited. Not just “what went wrong” — but “has anyone looked?”

15packages tracked
4audited
11unaudited

dotnet1 packages

PackageStatus
Newtonsoft.Jsonadvisory-mapped

homebrew1 packages

PackageStatus
openssl@3baseline stub

kubernetes1 packages

PackageStatus
kube-apiserveraudit-ingested

linux1 packages

PackageStatus
opensslbaseline stub

npm9 packages

PackageStatus
axiosadvisory-mapped
expressaudit-ingested
js-yamlaudit-ingested
jsonwebtokenadvisory-mapped
koa-routerbaseline stub
lodashaudit-ingested
minimistadvisory-mapped
path-to-regexpunknown
semveradvisory-mapped

python1 packages

PackageStatus
requestsadvisory-mapped

rust1 packages

PackageStatus
serdebaseline stub