Skip to content

Vanir is a source code-based static analysis tool that automatically identifies the list of missing security patches in the target system. By default, Vanir pulls up-to-date CVEs from Open Source Vulnerabilities (OSV) together with their corresponding signatures so that users can transparently scan missing patches for an up-to-date list of CVEs.

active 2024-08-142026-08-04 (UTC)

Partial coverage17,333 / 22,231 hourly files (78%) · 2 absent upstream · 4,897 failed, retryable2024-01-292026-08-12 (UTC)— sampled evenly across the window, so rankings and trends hold; absolute counts scale up.
Events
264
Pushes
2
Pull requests
9
Issues
8
Stars
185
Forks
18

Activity over time

Daily event counts in the loaded window

Line chart, 721 days from 2024-08-14 to 2026-08-04. Pushes: 2 total, peak 1 in a day. Pull requests: 9 total, peak 3 in a day. Issues: 8 total, peak 3 in a day. Comments: 23 total, peak 5 in a day. Stars: 185 total, peak 28 in a day.

  • Pushes
  • Pull requests
  • Issues
  • Comments
  • Stars

Stars, PRs, issues and forks are under-captured in the later part of this window. GH Archive progressively stopped capturing non-push events during 2026 — −95% or worse by the end of the window. Every series here except Pushes fades for that reason, so a decline above reflects the archive, not this repository. Pushes stay reliable throughout, so read them, and the contributor counts derived from them, as the real signal. Data health has the measurements.

Top contributors

Pushes, PRs, issues, reviews and comments — stars and forks excluded, so this is contribution rather than popularity

ContributorContributionsPushesPRsComments
doryiii12207
dependabot[bot]10073
baekhyunwook5005
iaskipko4002
vladdoster2011
mathieu0012001
aixiao06212001
huatong1232001
AumGupta1000
emmanuel-ferdman1010
vkrikun-bmw1001
firmianay1001

Recent activity

Latest issues, pull requests and releases

  • Issue comment#15vkrikun-bmw2025-12-19 10:34
    the option --package_version not working as expected
  • Issue comment#13iaskipko2025-09-26 09:42
    Error scanning python package enum34 and other
  • Issue#13iaskipko2025-09-26 09:42
    Error scanning python package enum34 and other
  • Issue comment#13doryiii2025-09-25 18:03
    Error scanning python package enum34 and other
  • Issue comment#13iaskipko2025-09-23 14:38
    Error scanning python package enum34 and other
  • Issue#13iaskipko2025-09-23 14:34
    Error scanning python package enum34 and other
  • Issue comment#6doryiii2025-08-17 19:09
    Fails to build detector_runner with Bazel >= 8
  • Issue#6doryiii2025-08-17 19:09
    Fails to build detector_runner with Bazel >= 8
  • Issue#7doryiii2025-08-17 19:08
    Why can't CVE-2024-43080 be scanned out?
  • Issue comment#12doryiii2025-08-17 19:08
    How to scan internal codes of a company to manage the warehouse?
  • Issue#12doryiii2025-08-17 19:08
    How to scan internal codes of a company to manage the warehouse?
  • Issue comment#10firmianay2025-08-12 02:59
    How to scan a generic Linux kernel
  • Pull request#11emmanuel-ferdman2025-03-22 19:15
  • Issue comment#9baekhyunwook2025-01-02 20:00
    Failed to Generate Vulnerability Signature
  • Issue comment#9aixiao06212025-01-02 18:18
    Failed to Generate Vulnerability Signature
  • Issue comment#9baekhyunwook2024-12-26 18:46
    Failed to Generate Vulnerability Signature
  • Issue#9aixiao06212024-12-24 09:02
    Failed to Generate Vulnerability Signature
  • Pull request#8dependabot[bot]2024-12-24 00:40
  • Issue comment#7doryiii2024-12-23 02:34
    Why can't CVE-2024-43080 be scanned out?
  • Issue comment#7huatong1232024-12-12 01:22
    Why can't CVE-2024-43080 be scanned out?
  • Issue comment#7doryiii2024-12-12 01:04
    Why can't CVE-2024-43080 be scanned out?
  • Issue comment#6baekhyunwook2024-12-11 06:52
    Fails to build detector_runner
  • Issue comment#6baekhyunwook2024-12-11 06:50
    Fails to build detector_runner
  • Issue comment#6mathieu0012024-12-11 06:06
    Fails to build detector_runner
  • Issue comment#6baekhyunwook2024-12-11 05:54
    Fails to build detector_runner

Totals cover only the window loaded into ClickHouse and count events, not GitHub's lifetime totals — 185 stars here means stars gained during the window, not the repo's star count.