mcpbeat

Cve Intelligence MCP Server

by cve-security
answering

Cve Intelligence is answering right now. Last checked 6 min ago. It exposes 4 tools.

CVE intelligence: exploitation (KEV/EPSS), detection coverage, fixed versions. All tools keyless.

Uptime history 38 hours of history
38 hours agonow
100.0%
Uptime 24h
92 of 92 checks
4
Tools
read from the server
194 ms
Response time
average over 24h
open, no key
Access
streamable-http

Connect this server

Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 6 min ago.

run in your terminal
claude mcp add cve-intelligence --transport http https://cve-security.com/api/mcp
~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "cve-intelligence": {
      "url": "https://cve-security.com/api/mcp"
    }
  }
}
~/.codex/config.toml
[mcp_servers.cve-intelligence]
url = "https://cve-security.com/api/mcp"
.cursor/mcp.json
{
  "mcpServers": {
    "cve-intelligence": {
      "url": "https://cve-security.com/api/mcp"
    }
  }
}
.vscode/mcp.json
{
  "mcpServers": {
    "cve-intelligence": {
      "url": "https://cve-security.com/api/mcp"
    }
  }
}

Available tools 4

Read directly from the server with tools/list, grouped by what they act on. If a tool disappears, we record the date.

cve
get_cve
Full intelligence record for one CVE: per-scorer CVSS, EPSS, CISA KEV/ransomware/SSVC, four remote-detection modalities plus the Sigma log-detection layer, per-product fixed versions (fixed = first patched build; affected_through = last VULNERABLE build, never a fix), news/community coverage, intelligence summary. No key required over MCP; an API key on the HTTP request (Authorization: Bearer cvs_live_…) is honoured for attribution. Absence semantics: a null field means this dataset holds no such record, never that none exists.
cves
search_cves
Search the catalog. Free text (q) and/or structured filters: vendor (slug), cwe (CWE-nnn), year ("2024,2025"), sev ("critical,high"), kev (0|1), ransomware (0|1), detect (0|1 — detection content we track), fix (0|1 — fix=0 means computed-and-none-held, never "no fix exists"), epss_gte (0..1), page, limit (1..50). Filter-only queries return the /browse slice ordered KEV-first then EPSS.
scoreboard
get_scoreboard
The Defender Scoreboard report (CC BY 4.0): exploited vs detectable vs patchable, every figure with its method, caveat and denominator, plus the corpus block and any method-change notes. Cite as "CVE Security Defender Scoreboard, cve-security.com/scoreboard".
updates
get_updates
The publication change stream: what this site published, stamped with OUR publish time (first_published, kev_added, detection_added, remediation_added). Pass since (YYYY-MM-DD, strictly-after) on the first call, then the returned next_cursor to continue. Events for withdrawn CVE ids are omitted.

Endpoints

URLTransportStateLatencyChecked
https://cve-security.com/api/mcp streamable-http answering 272 ms 6 min ago

Alternatives to Cve Intelligence

same job, measured the same way
NotCVE — CVE & Vulnerability Intelligence
by notcve

CVE & vulnerability search: 365k+ CVEs/NotCVEs, CVSS, EPSS, CISA KEV, exploits, patches, versions.

answering
Dependency Management MCP Server
by sonatype

Sonatype component intelligence: versions, security analysis, and Trust Score recommendations

3 tools answering
Injection Detector
by viridis-security

Formally-verified injection/exfiltration detector for AI agents (MCP-02).

2 tools answering
Cybersecurity Vulnerability Intel
by martc03

CVE lookup via NIST NVD, CISA KEV, EPSS, and MITRE ATT&CK. 7 tools.

answering
C
Exploit Intelligence Platform — CVE, Vulnerability and Exploit Database
by exploit-intel

Real-time CVE, exploit, and vulnerability intelligence for AI assistants (350K+ CVEs, 115K+ PoCs)

428 installs/wk 17 tools answering
PostgreSQL CVE & Release Intelligence
by meob

PostgreSQL security for AI agents: CVEs, yanked releases, exploits, and upgrade paths

680 installs/wk local only
Domainintel MCP
by bishop81

Domain intelligence for agents: WHOIS, DNS, SSL/TLS, security headers, reputation, subdomains.

72 installs/wk local only
Gapup MCP
by getgapup

271 agent-payable tools: competitive intel, finance, KYC, compliance, ESG. x402 per-call.

271 tools answering

Cve Intelligence — questions

Answers built from our own checks of this server.

What can Cve Intelligence do?
It exposes 4 tools, read directly from the server on our last check. Among them: get_cve, get_scoreboard, get_updates, search_cves. The full list with descriptions is on this page — we take it from the server itself via tools/list, not from a README. How MCP servers expose tools in the first place →
Is Cve Intelligence working right now?
We send a real MCP handshake every 15 minutes. Over the last 24 hours 92 of 92 checks got a reply (100.0%), average response time 194 ms. The bar chart above shows every period we have measured.
How do I connect Cve Intelligence?
Copy the ready config from this page — we generate it for Claude Code, Claude Desktop, Codex, Cursor and VS Code, each with the file path that client actually reads. It is a remote server, so there is nothing to install — the client connects to the address.
Does Cve Intelligence need an API key?
No. Cve Intelligence completed a full MCP handshake with us as an anonymous client and listed its tools without asking for anything. All 4 of them are readable on this page. This is what we observed, not what the docs claim.
How fast is Cve Intelligence?
It answers our handshake in 194 ms on average, which is faster than 66% of all working MCP servers we measure. The comparison comes from our own checks across the whole registry, every 15 minutes.