Open source cwe projects
Every project in the registry tagged cwe, ranked by real GitHub adoption.
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment fra
The SpotBugs plugin for security audits of Java web applications and Android applications. (Also work with Kotlin, Groovy and Scala projects)
cwe_checker finds vulnerable patterns in binary executables
Frequently asked questions
How many open source cwe projects are there?
This registry tracks 3 projects tagged cwe, with 25,624 GitHub stars between them. The most-adopted is Mobile-Security-Framework-MobSF at 21,816 stars.
Are these cwe projects free to use?
Yes — 3 of the 3 carry an explicit open-source licence across 2 distinct licences, so there is no licence fee. Where a project also sells a hosted or enterprise version, the self-hosted path remains free.
Which cwe project should I choose?
The list above is ranked by GitHub stars, but stars measure attention rather than fit. Check three things on each card: the licence (permissive versus copyleft), the language it is written in, and the last-push date — a high-star project that has not been pushed in a year is a liability.
Are these cwe projects still maintained?
2 of the 3 were pushed in the last 90 days, and every card shows its exact last-push date so you can see the rest. Sort your shortlist by that date before committing to a migration.