Why this server?
This server is explicitly designed for querying the CVE-Search API and provides comprehensive access to browse and retrieve detailed CVE information by CVE-ID.
AsecurityAlicense-qualityA Model Context Protocol (MCP) server for querying the CVE-Search API. This server provides comprehensive access to CVE-Search, browse vendor and product、get CVE per CVE-ID、get the last updated CVEs.Last updated 8 months ago691MITWhy this server?
This server retrieves CVE details from the NVD API and fetches EPSS scores, providing comprehensive vulnerability information and analysis capabilities.
-securityAlicense-qualityA server that retrieves CVE details from the NVD API and fetches EPSS scores to provide comprehensive vulnerability information, including descriptions, CWEs, CVSS scores, and exploitation likelihood percentiles.Last updated a year ago13MITWhy this server?
This server is specifically noted as a wrapper for the NIST National Vulnerability Database (NVD) API, which is the primary source for CVE information.
Why this server?
This server provides security vulnerability intelligence tools including CVE lookup, EPSS scoring, and exploit detection, making it highly relevant for analyzing CVEs.
AsecurityAlicense-qualityA Model Context Protocol server providing security vulnerability intelligence tools including CVE lookup, EPSS scoring, CVSS calculation, exploit detection, and Python package vulnerability checking.Last updated 10 months ago89MITWhy this server?
This server retrieves CVE details and accesses CISA's Known Exploited Vulnerabilities catalog, essential for prioritizing and analyzing CVEs based on exploitation likelihood.
-securityFlicense-qualityEnables comprehensive cybersecurity vulnerability assessment by searching GitHub repositories for exploits, querying NIST NVD for CVE details, and accessing CISA's Known Exploited Vulnerabilities catalog. Supports complete vulnerability research workflows from threat intelligence gathering to proof-of-concept discovery.Last updated 8 months ago4Why this server?
This server is designed for secure development by listing packages' CVEs, affected versions, and fix versions, which is directly applicable to analyzing vulnerabilities within a codebase context.
Why this server?
This server provides tools explicitly named for checking CVEs and performing vulnerability scanning on software dependencies.
AsecurityFlicense-qualityEnables checking npm packages for known security vulnerabilities using the OSV API before installation. Supports both single package checks and bulk vulnerability scanning for multiple packages at once.Last updated 5 months ago2Why this server?
While focused on general security/threat analysis, VirusTotal data is often correlated with CVEs, making this tool useful for gathering intelligence during vulnerability analysis.
-securityAlicense-qualityProvides comprehensive security analysis tools for querying the VirusTotal API, enabling detailed security reports on URLs, files, IP addresses, and domains with automatic relationship data fetching.Last updated a year ago3Apache 2.0Why this server?
Trivy is a well-known security scanner for vulnerabilities and misconfigurations (including those tied to CVEs), integrating directly into the analysis workflow.
-securityAlicense-qualityProvides Trivy security scanning capabilities through a standardized interface, allowing users to scan projects for vulnerabilities and automatically fix them by updating dependencies.Last updated a year ago10MIT