WappaCVElyze 作成者: cw
See the technologies behind any site with their versions, colour-coded by known vulnerabilities: current, outdated, end-of-life, vulnerable (CVE) or actively exploited (CISA KEV).
Android™ 版 Firefox でも利用可能Android™ 版 Firefox でも利用可能
Scan the QR code to open this extension in Firefox for Android
拡張機能メタデータ
スクリーンショット
この拡張機能について
WappaCVElyze identifies the web technologies behind the page you are on — server software, CMS, frameworks, JavaScript libraries — and, unlike a plain technology detector, shows the detected version and whether that version is safe.
Each technology gets a verdict:
• Current — newest release of a maintained cycle, no known CVE
• Outdated — no known CVE, but a newer release exists
• End of life — the release cycle no longer receives fixes
• Vulnerable — a CVE applies to this exact version, with the affected range, CVSS, EPSS exploitation probability and public-exploit flags
• Critical — the CVE is on CISA's Known Exploited Vulnerabilities catalog
Every red row links to the NVD record, the CISA entry and the vendor advisory that confirm it.
Verdicts come from a small database built daily from public sources (NVD, CISA KEV, FIRST EPSS, endoflife.date, Retire.js, Nuclei and Metasploit exploit indexes) and downloaded once a day. Page content is analysed locally and never leaves your browser; the site you visit is never sent anywhere. Privacy policy for every request the extension makes: https://github.com/xZoroo/wappacvelyze/blob/main/PRIVACY.md.
Open source (MIT): https://github.com/xZoroo/wappacvelyze — a command-line scanner with the same verdicts is included.
Each technology gets a verdict:
• Current — newest release of a maintained cycle, no known CVE
• Outdated — no known CVE, but a newer release exists
• End of life — the release cycle no longer receives fixes
• Vulnerable — a CVE applies to this exact version, with the affected range, CVSS, EPSS exploitation probability and public-exploit flags
• Critical — the CVE is on CISA's Known Exploited Vulnerabilities catalog
Every red row links to the NVD record, the CISA entry and the vendor advisory that confirm it.
Verdicts come from a small database built daily from public sources (NVD, CISA KEV, FIRST EPSS, endoflife.date, Retire.js, Nuclei and Metasploit exploit indexes) and downloaded once a day. Page content is analysed locally and never leaves your browser; the site you visit is never sent anywhere. Privacy policy for every request the extension makes: https://github.com/xZoroo/wappacvelyze/blob/main/PRIVACY.md.
Open source (MIT): https://github.com/xZoroo/wappacvelyze — a command-line scanner with the same verdicts is included.
0 人のレビュー担当者が 0 と評価しました
権限とデータ
必要な権限:
- ブラウザーのタブへのアクセス
- すべてのウェブサイトの保存されたデータへのアクセス
任意の許可設定:
- すべてのウェブサイトの保存されたデータへのアクセス
データ収集:
- 開発者によると、この拡張機能はデータ収集を必要としません。
詳しい情報
- アドオンリンク
- バージョン
- 0.1.0
- サイズ
- 8.28 MB
- 最終更新日
- 18日前 (2026年9月13日)
- 関連カテゴリー
- ライセンス
- MIT License
- バージョン履歴
- タグ
- コレクションへ追加