OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.
atom is a novel intermediate representation for applications and a standalone tool that is powered by chen.
Python library for code analysis with CPG and Joern
Code Hierarchy Exploration Net (chen)
Generate CPG for multiple languages for code and threat analysis