Vulnerability scanning is the automated process of identifying known security vulnerabilities in applications, dependencies, containers, and infrastructure. It helps detect risks early so they can be remediated before exploitation. Also known as security vulnerability scanning, it is a core DevSecOps practice.