pkg.soopen package index

brew / rang 7565

Installer vuls avec Homebrew, Nix, apt

Consultez les chemins d'installation, exécutables, métadonnées et notes de sécurité de vuls pour les workflows d'agents IA.

installation

Commandes d'installation supplémentaires

macOS

Homebrewvérifié · 100%
brew install vuls

local Homebrew formula metadata

Linux

Nixvérifié · 92%
nix profile install nixpkgs#vuls

nixpkgs package indexes · pkgs/by-name/vu/vuls/package.nix · Source: api.github.com

Ubuntu aptvérifié · 92%
sudo apt install vuls

Ubuntu 24.04 LTS package indexes · vuls · Source: archive.ubuntu.com

aperçu

Résumé du paquet

Agentless Vulnerability Scanner for Linux/FreeBSD

Commandes et alias

  • future-vuls
  • snmp2cpe
  • trivy-to-vuls
  • vuls
  • vuls-scanner

historique

Historique du projet et usages

Vuls is an agentless vulnerability scanner written in Go for Linux, FreeBSD, and later broader targets such as containers, application libraries, WordPress, network devices, Windows, and macOS. Its core idea is to inventory installed software and match it against vulnerability intelligence without requiring a resident scanner agent on every host.

Historique du projet

The GitHub repository was created under Future Architect in March 2016, and the README credits kotakanbe as the creator. The project grew from a concrete operations problem: administrators often cannot simply enable automatic updates on production servers, yet manually tracking NVD, OVAL, vendor trackers, and package advisories across many machines is error-prone.

Vuls developed as a Go-based scanner with multiple scan modes. Its documentation describes remote scans over SSH, local scans for hosts that should not be reached centrally, and server mode where target hosts collect software information and send it to a Vuls server over HTTP.

Over time Vuls expanded from OS package vulnerability checks into a larger security-data workflow. The README lists data sources and integrations including NVD, JVN, vendor OVAL feeds, distribution security trackers, Microsoft CVRF, exploit and PoC data, CISA Known Exploited Vulnerabilities, MITRE ATT&CK and CAPEC data, application dependency data, and WordPress scanning.

Historique d'adoption

Vuls is one of the more visible open-source host vulnerability scanners from the Go security tooling wave of the mid-2010s. By July 2026, GitHub repository metadata showed about 12.2k stars and more than 1.2k forks, indicating durable use well beyond a single-company internal tool.

The project also accumulated companion commands and data tools. Current release assets include `vuls`, `vuls-scanner`, `future-vuls`, `snmp2cpe`, and `trivy-to-vuls`, showing how the project adapted to adjacent scanners, CPE mapping, and hosted-service workflows.

Modes d'utilisation

A common Vuls workflow is to create a `config.toml`, fetch or serve vulnerability dictionaries, scan target machines, and then generate reports for humans or automation. Remote mode uses SSH from a central machine; local and server modes reduce the need for inbound access to target hosts.

Vuls does not update vulnerable packages itself. Its value is detection, prioritization, and reporting: it tells operators which servers and software are affected, adds severity and exploit context when available, and can send notifications through channels such as email or Slack.

Pourquoi les passionnés de paquets s'y intéressent

Vuls matters to package and security nerds because it turns package inventories, CVE identifiers, OVAL feeds, vendor advisories, CPE naming, and exploit metadata into a repeatable command-line workflow. It is especially relevant for people who care about the gap between distro package versions and upstream vulnerability identifiers.

Chronologie

  • 2016: future-architect/vuls was created on GitHub on March 27, 2016.
  • 2017: FreeBSD ports carried Vuls as an agentless vulnerability scanner with SSH, TUI, notification, and multi-distribution support.
  • 2020: v0.14.0 was published on December 23, 2020, among the older releases still visible through the GitHub releases API page inspected for this run.
  • 2026: v0.39.3 was published on June 9, 2026, with signed release artifacts for multiple Vuls-related commands.

Related projects

  • Vuls is related to go-cve-dictionary, goval-dictionary, go-cpe-dictionary, gost, go-exploitdb, vulsctl, VulsRepo, Trivy, OWASP Dependency-Check, NVD, JVN, OVAL, and distribution security trackers.

posture de sécurité

Niveau de risque : red

escape, surveillance, or offensive capability signal.

Classificateur de risque

risque red · confiance moyen · escape-surveillance-offensive

Pourquoi

  • escape, surveillance, or offensive capability signal

Signaux

  • text:vulnerability scanner

Comportement d'installation

  • Aucune métadonnée de bottle Homebrew n’a été enregistrée.

Revue recommandée

Avant une utilisation sans surveillance par un agent, vérifiez si l'outil lit des identifiants en clair, écrit un état distant, publie des artefacts ou lance des plugins.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
config.toml

exécutables

Exécutables installés

CommandeTypeExpositionNote
future-vulsexécutableexécutable indexéDécouvert depuis l'index local des exécutables.
snmp2cpeexécutableexécutable indexéDécouvert depuis l'index local des exécutables.
trivy-to-vulsexécutableexécutable indexéDécouvert depuis l'index local des exécutables.
vulsexécutableexécutable indexéDécouvert depuis l'index local des exécutables.
vuls-scannerexécutableexécutable indexéDécouvert depuis l'index local des exécutables.

fraîcheur

Version et fraîcheur

Ces signaux séparent l'âge de génération de la page, l'activité du gestionnaire de paquets et la comparaison avec les versions amont. Un retard de version n'est signalé que lorsqu'une URL de preuve et des versions comparables sont présentes.

page générée2026-08-03
version du gestionnaire0.40.1
gestionnaire mis à jour2026-07-30
données localesinconnu
amontnon disponible
dernière version détectéenon détecté
  • OKAucun avertissement de fraîcheur n'a été généré.

métadonnées d'installation

Métadonnées du paquet

Clé du paquetbrew:vuls
Version0.40.1
Gestionnaire de paquetsHomebrew
Page d'accueilhttps://vuls.io/
Dépôthttps://github.com/future-architect/vuls
Dernière mise à jour2026-07-30T03:56:20Z
Pulseupdated
Bouteillenon enregistré
Serviceaucun déclaré

correspondances dans les bases sources

Autres enregistrements de gestionnaires de paquets

Les correspondances proviennent d’index externes de gestionnaires de paquets et restent séparées des liens de paquets Automic Vault locaux.

Nix95%

vuls

nix profile install nixpkgs#vuls
  • normalized package name match
  • Correspondance par : Vuls
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/vu/vuls/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
Ubuntu apt95%

vuls 0.6.1-5

Vulnerability scanner for Linux/FreeBSD, agentless, written in Go

https://github.com/future-architect/vuls

sudo apt install vuls
  • Section: universe/devel
  • Architecture: amd64
  • 2 Dépendances
  • normalized package name match
  • Correspondance par : Vuls
Ubuntu 24.04 LTS package indexes · archive.ubuntu.com · Ubuntu 24.04 LTS package indexes: vuls from https://archive.ubuntu.com/ubuntu/dists/noble/universe/binary-amd64/Packages.gz

piste source

Généré depuis les données du dépôt

Cette page est servie par av-web depuis l'artéfact SQLite privé des paquets généré par scripts/generate-pkg-sqlite.py.

Sources utilisées

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • pkg.so package database
  • pkgdb category and tag curation