Open source vulnerability-scanner projects

Every project in the registry tagged vulnerability-scanner, ranked by real GitHub adoption.

projects 3 combined stars ★ 47K refresh nightly
01 ProjectDiscovery ★ 31K

Advanced vulnerability detection and management platform

last push22 hours ago languageGo licenseMIT
02 osv-scanner ★ 11K

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

last push4 hours ago languageGo licenseApache-2.0
03 afrog ★ 4.4K

A Security Tool for Bug Bounty, Pentest and Red Teaming.

last push21 hours ago languageHTML licenseMIT

← all tags

Frequently asked questions

How many open source vulnerability-scanner projects are there?

This registry tracks 3 projects tagged vulnerability-scanner, with 46,756 GitHub stars between them. The most-adopted is ProjectDiscovery at 31,290 stars.

Are these vulnerability-scanner projects free to use?

Yes — 3 of the 3 carry an explicit open-source licence across 2 distinct licences, so there is no licence fee. Where a project also sells a hosted or enterprise version, the self-hosted path remains free.

Which vulnerability-scanner project should I choose?

The list above is ranked by GitHub stars, but stars measure attention rather than fit. Check three things on each card: the licence (permissive versus copyleft), the language it is written in, and the last-push date — a high-star project that has not been pushed in a year is a liability.

Are these vulnerability-scanner projects still maintained?

3 of the 3 were pushed in the last 90 days, and every card shows its exact last-push date so you can see the rest. Sort your shortlist by that date before committing to a migration.