1、Roave/SecurityAdvisories
安装此依赖后会阻止安装其他危险依赖项
github地址: https://github.com/Roave/SecurityAdvisories
2、FriendsOfPHP/security-advisories
通过composer.lock文件检查依赖包安全性
github地址: https://github.com/FriendsOfPHP/security-advisories#checking-for-vulnerabilities