Skip to content

Releases: xaitax/SploitScan

v0.11.0

05 Sep 18:07
Compare
Choose a tag to compare
  • Method Selection Added: Introduced a new -m argument to allow users to selectively run specific methods (e.g., cisa, epss, hackerone, ai, prio, references). This enables more granular control over which data sources and assessments are retrieved for each CVE.
  • Import List Auto-Detection: Added functionality to automatically detect and handle plain text CVE lists when using the -i option without specifying an import type (-t). If the file is detected as a plain text CVE list, it will import the CVE IDs directly without requiring a specific type.
  • CSV Export Fix: Fixed an issue where CISA data was not properly exported to CSV. Now, all relevant CISA information is included in the exported CSV file.
  • HTML Export Fix: Resolved an issue where NoneType errors caused the HTML export to fail. Improved error handling to ensure that missing or empty data does not interrupt the export process.

v0.10.5

13 Aug 10:54
Compare
Choose a tag to compare

[13. August 2024] - Version 0.10.5

  • General Improvements: Prevent IndexError by checking for non-empty lists before accessing elements.

v0.10.4

18 Jul 10:00
Compare
Choose a tag to compare

[18. July 2024] - Version 0.10.4

  • CVE ID Export: Fixed the display of the CVE ID not exporting in HTML.
  • Enhanced CVE Retrieval: Fixed the retrieval of missing CVE information if nested differently.

v0.10.3

30 Jun 14:25
Compare
Choose a tag to compare
  • Main Function Refactoring: Refactored the main function into smaller, modular functions to improve maintainability and readability.
  • Public Exploit Display Enhancements: Reworked the public exploit display to include the total number of exploits and better error handling.
  • Improved Error Handling: Enhanced error handling for API key configurations and data fetching, especially for VulnCheck.

v0.10.2

30 Jun 09:17
Compare
Choose a tag to compare

[30. June 2024] - Version 0.10.2

  • Custom Configuration Path: Added support for specifying a custom configuration file path using the --config or -c command-line argument.
  • Platform-Specific Directories: Added support for platform-specific (*nix, macOS, Windows) configuration directories.
  • Debug Mode: Improved debug output for configuration file loading.

v0.10.1

27 Jun 14:43
3a0abef
Compare
Choose a tag to compare

[27. June 2024] - Version 0.10.1

  • HackerOne Integration: Added support for searching through HackerOne and displays if the CVE was used in any Bug Bounty program including its rank.
  • General Improvements: Various bug fixes.

v0.10.0

26 Jun 19:56
Compare
Choose a tag to compare

[26. June 2024] - Version 0.10

  • HackerOne Integration: Added support for searching through HackerOne and displays if the CVE was used in any Bug Bounty program including its rank.
  • General Improvements: Various bug fixes.

v0.9.1

24 May 20:00
Compare
Choose a tag to compare
  • AI-Powered Risk Assessment: Integrated OpenAI for detailed risk assessments, potential attack scenarios, mitigation recommendations, and executive summaries (needs OpenAI API key).
  • CVE Information Retrieval: Due to API rate limits and instabilities replaced NIST NVD with CVE Program.
  • General Improvements: Various bug fixes and performance improvements.

v0.9

24 May 19:55
Compare
Choose a tag to compare
  • AI-Powered Risk Assessment: Integrated OpenAI for detailed risk assessments, potential attack scenarios, mitigation recommendations, and executive summaries (needs OpenAI API key).
  • CVE Information Retrieval: Due to API rate limits and instabilities replaced NIST NVD with CVE Program.
  • General Improvements: Various bug fixes and performance improvements.

v0.8.1

20 May 15:50
Compare
Choose a tag to compare

HTML Export Functionality: Introduced the ability to export vulnerability data to HTML reports.
Packet Storm Integration: Added support for fetching exploit data from Packet Storm.
Enhanced Display Functions: Added CVE_GITHUB_URL as CVE source, and functions to output the most updated CVE source.
Code Refactoring: Refactored code to improve maintainability and readability due to the growing code base.