With the announcement of an xy exploit, some links to potential security tools.
https://snyk.io/advisor/python/pip
https://snyk.io/advisor/npm-package/listr2
https://snyk.io/advisor/golang/github.com/gin-gonic/gin
https://snyk.io/advisor/docker/alpine
https://github.com/rustsec/rustsec/tree/main/cargo-audit
https://github.com/EmbarkStudios/cargo-deny
https://ubuntu.com/security/oval
https://www.veracode.com/products/binary-static-analysis-sast
https://github.com/SonarSource/sonarqube
https://github.com/google/clusterfuzz
https://github.com/google/oss-fuzz
https://github.com/wazuh/wazuh
https://owasp.org/www-project-dependency-check/
https://github.com/gemnasium
https://www.synopsys.com/software-integrity/software-composition-analysis-tools/black-duck-sca.html
https://checkmarx.com/cxsast-source-code-scanning/
https://www.opentext.com/products/fortify-static-code-analyzer
https://www.perforce.com/products/klocwork
https://spectralops.io/features/
https://www.opentext.com/products/fortify-webinspect
https://www.synopsys.com/software-integrity/application-security-testing-services.html
https://www.tenable.com/products/web-app-scanning
https://www.contrastsecurity.com/
https://www.contrastsecurity.com/
https://www.legitsecurity.com/
https://www.netrise.io/industries/power-utilities