Libraries tagged by insecure
smichaelsen/no-insecure-typo3-extensions
69015 Downloads
This package declares conflicts to insecure TYPO3 extensions
schams-net/nagios
44367 Downloads
Monitors TYPO3 instances and warns about insecure extensions, old TYPO3 versions, wrong PHP versions, etc. Requires a Nagios monitoring server.
jmikola/insecure-routes-bundle
10941 Downloads
Removes HTTPS scheme requirements from routes in your Symfony2 app (for dev/test environments).
move-elevator/typo3-toolbox
4628 Downloads
A TYPO3 toolbox so handy, it makes even missing plugins feel insecure.
laramint/php-security-scanner
1682 Downloads
Framework-agnostic static security scanner for PHP. Detects SQLi, XSS, command injection, path traversal, insecure deserialization, weak crypto, hardcoded secrets, and more.
laramint/laravel-security-scanner
1640 Downloads
Laravel-aware security rules for php-security-scanner. Detects Laravel SQL injection (DB::raw, whereRaw), mass assignment, debug/dd leaks, unsafe validators, CSRF bypass, insecure cookies, env exposure, Blade raw echo, open redirect, Http SSRF, Storage/File path traversal, file-upload validation gaps, Auth/Crypt/Artisan/Process/Config injection, view-name injection, session fixation, and Mail header injection.
ubient/laravel-pwned-passwords
17344 Downloads
A Laravel validation rule to determine whether a given password is pwned (insecure)
php-extended/php-http-client-uir
23219 Downloads
A psr-18 compliant middleware client that handles upgrade insecure request headers.
vartroth/php-security-lint
810 Downloads
A PHP security linter to detect insecure functions like var_dump, print_r, and other dangerous functions in your codebase
giantpeach/wp-sane-defaults
125 Downloads
WordPress mu-plugin that fixes common insecure and annoying defaults.
schams-net/nagios-extensionlist
577 Downloads
Generates a list of insecure extensions for EXT:nagios based on the extension list in the current TYPO3 instance.
patrick-rose/laravel-shared-host
32 Downloads
An easy way for people on shared hosting without command line access to use laravel. It is likely insecure because of it
andrewbreksa/mysql-escape-string-polyfill
107 Downloads
mysql-escape-string-polyfill is a very insecure `mysql_escape_string` implementation (PHP 7.1/7.2/8.0) for a very limited use case
diegomagikal/laravel-password
48 Downloads
Protect your users from entering dumb and common passwords
sixmonkey/stupid-passwords
9 Downloads
Generate insecure, but funny passwords