Dependency Vulnerability Scanner with OSV
Load a manifest or lockfile and the package names, versions and ecosystems it names are checked against OSV; the table lists the advisories that come back with their severity and fixed version. A lockfile gives resolved versions, a manifest range is queried at its lowest declared version.