platform

vScript - script engine

vScript gives your team three script sources in one engine: scripts your team writes, community scripts from vSociety, and AI-generated scripts from ScriptAI. Run PowerShell, Bash, and Batch across Windows, macOS, and Linux for detection, remediation, and hardening.

request a demo
130
+

new vulnerabilities per day

80
%

reduction in manual patching

MTTR

from Months to Hours

benefits

Fix what patches can't reach

Not every vulnerability closes with a patch. Configuration weaknesses, registry misconfigurations, and hardening gaps need a different fix. vScript backs your team with community scripts, your own code, and AI so every vulnerability has a fix path.

No patch, still fixed

vScript targets configuration weaknesses and registry misconfigurations directly on the asset, so your team closes vulnerabilities that have no patch path.

Respond to CVEs faster

The Vicarius Research Team publishes detection and mitigation scripts for trending CVEs, so your team responds to active threats before a vendor fix exists.

Scripts built for you

ScriptAI combines your system state with active exploit data to generate scripts for your exact exposure, so nothing gets missed

Community sourced scripts, ready now

vSociety hosts community scripts for common CVEs and hardening tasks, so your team deploys a tested fix without writing one from scratch.

Harden any asset consistently

vScript audits, reports, and hardens systems across Windows, macOS, and Linux, so every asset meets your security standard without manual effort.

No separate scripting tool

vScript runs inside vRx alongside patching and vShield, so your team remediates, hardens, and scripts without managing a separate tool or workflow.
key capabilities

Three script sources, one remediation engine

vScript runs custom, community, and AI-generated scripts across PowerShell, Bash, and Batch on Windows, macOS, and Linux. Every script reads from the same discovery layer as vPatch and vShield, making vRx the only remediation engine your team needs.

Custom script authoring
+
vScript accepts custom scripts written in PowerShell, Bash, or Batch, executed against individual assets or asset groups across all supported operating systems.
ScriptAI
+
ScriptAI generates scripts based on your system's specific state and the vulnerabilities and exploits currently active in the wild.
vSociety community library
+
vScript connects to vSociety, a community of security professionals contributing scripts for common CVEs, hardening tasks, and operational workflows.
Rapid CVE response scripts
+
The Vicarius Research Team publishes detection,remediation and operational scripts for trending CVEs directly into vScript as threats become public.
Execution logging and reporting
+
vScript logs every execution with a timestamped record of which script ran, on which assets, and what the outcome was.
Shared discovery layer access
+
vScript reads from the same discovery layer as vPatch and vShield, so script targets match confirmed vulnerability data across your estate.
Resources

Additional Resources

Product article

When Patching isn't enough: how vRx's Scripting Engine closes the Remediation gap

Product article

Why the vRx by Vicarius Scripting Library is one of the most loved capabilities

Product article

6 tasks Vicarius automates better than your current vulnerability platform

downloadable

True remediation solution brief

Shortlist 2024 by Captera
Tech leader award by PeerSpot
4.8
Customer first by Gartner
Customer first by Gartner
4.7
Customer first by Gartner
Leader spring by G2
Leader spring by G2
Leader spring by G2
Leader spring by G2

What Our Customers Say About Us

See why enterprises trust our approach to AppSec to secure their business-critical applications

From urgency to strategy

“Vicarius allowed us to step away from reactive patching and finally manage vulnerabilities with strategy instead of urgency.”
No items found.
en / Anonymous IT Division Manager
Anonymous IT Division Manager
IT Division Manager

60% faster remediation, many hours saved

Anonymous Security Analyst
No items found.
en / Anonymous Security Analyst
Anonymous Security Analyst
Security Analyst

Patchless Protection is an incredible technology!

"vRx reduces the time customers spend on patching by reducing the overhead on the administrators, allowing them to do additional work. It saves time they would spend addressing the patching process, follow-ups, etc."
No items found.
en / Antwune Gray
Antwune Gray
VP IT Security and Services

Third-party software patching is the most valuable feature.

"We have automated third-party patching on specific software, improving efficiency by 80%. vRx has reduced our patching time, which has improved our operations. It is more robust than other solutions because it offers better third-party remediation."
No items found.
en / Billy Turner
Billy Turner
VP, Managed Technology & Services

Complete Vulnerability Remediation Platform

"What stood out was that it wasn’t just a scanner or a patch manager. It was an entire remediation platform. You discover vulnerabilities, prioritize based on real risk, and remediate automatically."
en / Eric Dowsland
Eric Dowsland
Chief Customer Officer

My favorite feature is Patchless Protection

"With Vicarius' vRx, I've never seen a patch that failed or had to be rolled back. We're saving quite a bit of time. Our clients using vRx haven't had any issues, and they've easily established patching for all their endpoints."
en / Jeremy Herman
Jeremy Herman
Security Engineer

Great patching capabilities, helpful dashboard, and excellent support

"vRx has saved us an incredible amount of time. We can just rely on the automated system and the schedules we've set. It's a huge time saver. It's saved us hundreds of hours."
No items found.
en / Michael Cortez
Michael Cortez
Sr. Director of IT

Merge Security & IT to Remediate Threats

“Vicarius’s vRx enabled Adama to centralize and consolidate work between IT and security teams, leading to a more efficient patching workflow."
No items found.
en / Oshri Cohen
Oshri Cohen
CISO

Everything you need to know

What is vScript and what can it do?

vScript is vRx's scripting engine for detection, remediation, and hardening across your managed estate. It runs three types of scripts: custom scripts your team writes, community scripts from vSociety, and AI-generated scripts from scriptAI. All three execute in PowerShell, Bash, or Batch on Windows, macOS, and Linux.

What is the difference between custom, community, and AI-generated scripts?

Custom scripts come from your own team for your specific environment. Community scripts come from vSociety, where security professionals share scripts for common CVEs, hardening tasks, and operational needs. AI-generated scripts come from scriptAI, which takes exploit data to generate scripts for your exact exposure, so nothing gets missed

How does scriptAI generate scripts?

ScriptAI reads two inputs: your system's current state and the vulnerabilities and exploits currently active in the wild. It combines both to generate scripts targeted at your actual exposure. Your team gets a relevant fix without researching what to write or knowing which threats apply to their environment.

Does vScript handle vulnerabilities that patches cannot close?

Yes. Patches close vulnerabilities where a vendor has shipped a fix. vScript closes the ones patches cannot reach: configuration-based vulnerabilities, registry misconfigurations, hardening gaps, and operational weaknesses. If a CVE requires a configuration change rather than an update, vScript delivers a targeted fix without waiting for the vendor.

How does vScript connect to the rest of vRx?

vScript reads from the same vulnerability discovery layer as vPatch and vShield. When vRx identifies a vulnerability on an asset, your team can choose to patch, shield, or script the fix from the same view. Three remediation paths from one discovery layer, with no separate tools and no duplicate data.

What scripting languages does vScript support?

vScript supports PowerShell for Windows environments, Bash for macOS and Linux, and Batch for Windows environments where it applies. Your team selects the script type when creating or deploying. scriptAI generates in the appropriate language automatically based on the target asset's operating system.

How do I know a community script from vSociety is safe to run?

vSociety scripts are contributed by the security community and reviewed by the Vicarius research team before publication. Your team can read the full script before running it, test it against a single asset before broader deployment, and review execution logs afterward.

4.7/5

Remediate more vulns with vRx