Join us

ContentUpdates and recent posts about OWASP Dependency-Check..
Discovery IconThat's all about @OWASP Dependency-Check — explore more posts below...
 Activity
@goutham-annem started using tool vLLM , 4 hours, 10 minutes ago.
 Activity
@goutham-annem started using tool Kubernetes , 4 hours, 10 minutes ago.
 Activity
@goutham-annem started using tool Istio , 4 hours, 10 minutes ago.
 Activity
@goutham-annem started using tool GPT-5.3-Codex , 4 hours, 10 minutes ago.
 Activity
@goutham-annem started using tool Google Kubernetes Engine (GKE) , 4 hours, 10 minutes ago.
 Activity
@goutham-annem started using tool Claude Code , 4 hours, 10 minutes ago.
 Activity
@goutham-annem started using tool Azure Kubernetes Service (AKS) , 4 hours, 10 minutes ago.
 Activity
@goutham-annem started using tool AWS EKS , 4 hours, 10 minutes ago.
 Activity
@goutham-annem started using tool Amazon Web Services , 4 hours, 10 minutes ago.
 Activity
@goutham-annem started using tool Amazon ECS , 4 hours, 10 minutes ago.
OWASP Dependency-Check is an open source Software Composition Analysis (SCA) tool that scans application dependencies to detect publicly disclosed vulnerabilities. It analyzes project manifests, package metadata, and binary artifacts, then matches them against multiple vulnerability databases, including the NVD. Dependency-Check supports Java, JavaScript, .NET, Python, Ruby, and many other ecosystems. Teams integrate it into CI pipelines, IDEs, and build systems to catch vulnerable libraries early and maintain secure software supply chains. As part of the OWASP foundation, it is widely trusted for transparent, vendor-neutral security scanning.