The following are sources of vulnerability information. Dependency-check only uses information in the National Vulnerability Database (NVD). The other sources listed below contain vulnerability information that may not be included in the NVD. * National Vulnerability Database * OSVDB
The below list is merely informational. It is not a complete list, nor do the authors of dependency-check endorse any of the products listed below. * Sonatype CLM * Black Duck * Palamida