OpenVAS (Greenbone Vulnerability Management) is a popular open‑source scanner. Below is a curated list of 20 alternative vulnerability‑management solutions—ranging from commercial platforms to free tools—that provide scanning, reporting, remediation tracking, and integration capabilities.
Get targeted exposure with custom position pinning and highlighted placement.
Industry‑leading scanner offering over 70,000 plugins, credentialed scans, and extensive compliance templates.
Cloud‑native platform delivering continuous scanning, asset inventory, and automated remediation workflows.
Live vulnerability management with real‑time analytics, risk scoring, and integration to ticketing and DevOps pipelines.
On‑premise scanner that feeds data into InsightVM, offering dynamic asset discovery and risk‑based prioritization.
Unified cloud suite combining VM, Web Application Scanning, Policy Compliance, and Threat Protection.
Integrated with Microsoft Defender for Endpoint, provides continuous discovery, assessment, and remediation guidance for Windows environments.
On‑premise/virtual appliance that aggregates Nessus data, offers dashboards, compliance reporting, and threat intelligence.
Specialized web‑application scanner with advanced crawling, XSS/SQLi detection, and CI/CD integration.
Comprehensive web security testing suite featuring active scanning, intruder attacks, and extensive extensions.
Open‑source framework for compliance checking and vulnerability assessment using SCAP standards.
Cloud‑based scanner focused on web‑app vulnerabilities, automated crawling, and detailed remediation guidance.
Enterprise‑grade vulnerability management with risk scoring, asset discovery, and integration to SIEMs.
Risk‑based platform that aggregates vulnerability data, applies predictive analytics, and prioritizes remediation.
Scans container images for known CVEs, misconfigurations, and provides runtime protection.
Cloud‑based vulnerability management service that unifies asset discovery, scanning, and remediation tracking.
Dynamic application security testing (DAST) platform delivering continuous web‑app scanning and risk analytics.
Automates patch assessment and deployment across Windows, Linux, and third‑party applications.
SaaS web‑app scanner powered by a global security researcher community, offering automated scans and alerts.
A limited‑feature free version of Nessus suitable for small teams and hobbyist security testing.
Provides continuous, agent‑less discovery of hardware, software, and cloud assets to feed vulnerability data.