WappaCVElyze 제작자: cw
See the technologies behind any site with their versions, colour-coded by known vulnerabilities: current, outdated, end-of-life, vulnerable (CVE) or actively exploited (CISA KEV).
Android™용 Firefox에서 사용 가능Android™용 Firefox에서 사용 가능
Android용 Firefox에서 이 확장 기능을 열려면 QR 코드를 스캔하세요
확장 메타 데이터
스크린샷
정보
WappaCVElyze identifies the web technologies behind the page you are on — server software, CMS, frameworks, JavaScript libraries — and, unlike a plain technology detector, shows the detected version and whether that version is safe.
Each technology gets a verdict:
• Current — newest release of a maintained cycle, no known CVE
• Outdated — no known CVE, but a newer release exists
• End of life — the release cycle no longer receives fixes
• Vulnerable — a CVE applies to this exact version, with the affected range, CVSS, EPSS exploitation probability and public-exploit flags
• Critical — the CVE is on CISA's Known Exploited Vulnerabilities catalog
Every red row links to the NVD record, the CISA entry and the vendor advisory that confirm it.
Verdicts come from a small database built daily from public sources (NVD, CISA KEV, FIRST EPSS, endoflife.date, Retire.js, Nuclei and Metasploit exploit indexes) and downloaded once a day. Page content is analysed locally and never leaves your browser; the site you visit is never sent anywhere. Privacy policy for every request the extension makes: https://github.com/xZoroo/wappacvelyze/blob/main/PRIVACY.md.
Open source (MIT): https://github.com/xZoroo/wappacvelyze — a command-line scanner with the same verdicts is included.
Each technology gets a verdict:
• Current — newest release of a maintained cycle, no known CVE
• Outdated — no known CVE, but a newer release exists
• End of life — the release cycle no longer receives fixes
• Vulnerable — a CVE applies to this exact version, with the affected range, CVSS, EPSS exploitation probability and public-exploit flags
• Critical — the CVE is on CISA's Known Exploited Vulnerabilities catalog
Every red row links to the NVD record, the CISA entry and the vendor advisory that confirm it.
Verdicts come from a small database built daily from public sources (NVD, CISA KEV, FIRST EPSS, endoflife.date, Retire.js, Nuclei and Metasploit exploit indexes) and downloaded once a day. Page content is analysed locally and never leaves your browser; the site you visit is never sent anywhere. Privacy policy for every request the extension makes: https://github.com/xZoroo/wappacvelyze/blob/main/PRIVACY.md.
Open source (MIT): https://github.com/xZoroo/wappacvelyze — a command-line scanner with the same verdicts is included.
리뷰어 0명이 0점으로 평가함
권한 및 데이터
필수 권한:
- 브라우저 탭에 접근
- 모든 웹사이트에서 사용자의 데이터에 접근
선택적 권한:
- 모든 웹사이트에서 사용자의 데이터에 접근
데이터 수집:
- 개발자는 이 확장 기능이 데이터 수집을 요구하지 않는다고 밝히고 있습니다.
추가 정보
- 부가 기능 링크
- 버전
- 0.1.0
- 크기
- 8.28 MB
- 최근 업데이트
- 18일 전 (2026년 9월 13일)
- 관련 카테고리
- 라이선스
- MIT 라이선스
- 버전 목록
- 태그
- 모음집에 추가