WappaCVElyze автор cw
See the technologies behind any site with their versions, colour-coded by known vulnerabilities: current, outdated, end-of-life, vulnerable (CVE) or actively exploited (CISA KEV).
Доступно у Firefox для Android™Доступно у Firefox для Android™
Scan the QR code to open this extension in Firefox for Android
Метадані розширення
Знімки екрана
Про це розширення
WappaCVElyze identifies the web technologies behind the page you are on — server software, CMS, frameworks, JavaScript libraries — and, unlike a plain technology detector, shows the detected version and whether that version is safe.
Each technology gets a verdict:
• Current — newest release of a maintained cycle, no known CVE
• Outdated — no known CVE, but a newer release exists
• End of life — the release cycle no longer receives fixes
• Vulnerable — a CVE applies to this exact version, with the affected range, CVSS, EPSS exploitation probability and public-exploit flags
• Critical — the CVE is on CISA's Known Exploited Vulnerabilities catalog
Every red row links to the NVD record, the CISA entry and the vendor advisory that confirm it.
Verdicts come from a small database built daily from public sources (NVD, CISA KEV, FIRST EPSS, endoflife.date, Retire.js, Nuclei and Metasploit exploit indexes) and downloaded once a day. Page content is analysed locally and never leaves your browser; the site you visit is never sent anywhere. Privacy policy for every request the extension makes: https://github.com/xZoroo/wappacvelyze/blob/main/PRIVACY.md.
Open source (MIT): https://github.com/xZoroo/wappacvelyze — a command-line scanner with the same verdicts is included.
Each technology gets a verdict:
• Current — newest release of a maintained cycle, no known CVE
• Outdated — no known CVE, but a newer release exists
• End of life — the release cycle no longer receives fixes
• Vulnerable — a CVE applies to this exact version, with the affected range, CVSS, EPSS exploitation probability and public-exploit flags
• Critical — the CVE is on CISA's Known Exploited Vulnerabilities catalog
Every red row links to the NVD record, the CISA entry and the vendor advisory that confirm it.
Verdicts come from a small database built daily from public sources (NVD, CISA KEV, FIRST EPSS, endoflife.date, Retire.js, Nuclei and Metasploit exploit indexes) and downloaded once a day. Page content is analysed locally and never leaves your browser; the site you visit is never sent anywhere. Privacy policy for every request the extension makes: https://github.com/xZoroo/wappacvelyze/blob/main/PRIVACY.md.
Open source (MIT): https://github.com/xZoroo/wappacvelyze — a command-line scanner with the same verdicts is included.
Rated 0 by 0 reviewers
Permissions and data
Необхідні дозволи:
- Отримувати доступ до вкладок браузера
- Отримувати доступ до ваших даних для всіх вебсайтів
Необов'язкові дозволи:
- Отримувати доступ до ваших даних для всіх вебсайтів
Data collection:
- The developer says this extension doesn't require data collection.
Більше інформації
- Посилання додатка
- Версія
- 0.1.0
- Розмір
- 8,28 МБ
- Востаннє оновлено
- 22 дні тому (13 вер 2026 р.)
- Пов'язані категорії
- Ліцензія
- Ліцензія MIT
- Історія версій
- Мітки
- Додати до збірки