Good initiative !
You can already scan them via free tools, some interesting issues when dealing with 3rd party dependencies. And all have open issues. Remember that next month is also the annual hacktoberfest so more options to contribute to OSS. Good luck !!
c
Craig Alfieri
09/03/2022, 12:22 PM
Thanks Arie! Appreciate that, yeah was scanning the Apache Jira yesterday, there were a ton out there, was hoping this exercise could help with focus
a
Arie Heinrich
09/03/2022, 12:24 PM
Try Snyk. You can open a free account as your scanning open source projects without even forking them and you get some extra information, quite some other tools around that offer free accounts for scanning OSS projects.