mcpbeat Sign in

NotCVE — CVE & Vulnerability Intelligence MCP Server

answering

NotCVE — CVE & Vulnerability Intelligence is answering right now. Last checked 5 min ago.

CVE & vulnerability search: 365k+ CVEs/NotCVEs, CVSS, EPSS, CISA KEV, exploits, patches, versions.

Uptime history 47 days of history · worst day 91%
47 days agonow
100.0%
Uptime 24h
92 of 92 checks
Tools
hidden behind auth
332 ms
Response time
average over 24h
OAuth sign-in
Access
streamable-http

Nothing serious here today

Today is the operative word: we check NotCVE — CVE & Vulnerability Intelligence every 15 minutes and re-read its code on every release. Watch it and you find out the day that stops being true.

Three servers free · no card

Connect this server

Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 5 min ago.

run in your terminal
claude mcp add vulnerability-intelligence --transport http https://notcve.org/mcp
~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "vulnerability-intelligence": {
      "url": "https://notcve.org/mcp"
    }
  }
}
~/.codex/config.toml
[mcp_servers.vulnerability-intelligence]
url = "https://notcve.org/mcp"
.cursor/mcp.json
{
  "mcpServers": {
    "vulnerability-intelligence": {
      "url": "https://notcve.org/mcp"
    }
  }
}
.vscode/mcp.json
{
  "mcpServers": {
    "vulnerability-intelligence": {
      "url": "https://notcve.org/mcp"
    }
  }
}

This endpoint answered with an authorization challenge. The server is running, and it signs you in through your browser: there is no API key to paste.

Endpoints

URLTransportStateLatencyChecked
https://notcve.org/mcp streamable-http sign-in 804 ms 5 min ago

Alternatives to NotCVE — CVE & Vulnerability Intelligence

same job, measured the same way
Cve Intelligence
by cve-security

CVE intelligence: exploitation (KEV/EPSS), detection coverage, fixed versions. All tools keyless.

8 tools answering
Vulnerability Intel MCP
by nexlab

Defensive vulnerability intelligence search across public CVE/NVD and GitHub advisory APIs with CVSS

answering
Cisa Kev
by pipeworx-io

CISA Known Exploited Vulnerabilities catalog

35 tools answering
Purify Security Feeds
by eason4kim-rocket

Query CISA KEV / EPSS vulnerability feeds with full per-record provenance and auditable versions

local only
CISA Known Exploited Vulnerabilities (kevwatch)
by a2awire

CISA KEV catalog: active-exploit alerts, hourly. Register in-session — free testnet funds.

16 tools answering
PostgreSQL CVE & Release Intelligence
by meob

PostgreSQL security for AI agents: CVEs, yanked releases, exploits, and upgrade paths

105 installs/wk local only
Exploitwatch
by vercel-exploitwatch-kappa

Check dependencies against CISA's real Known Exploited Vulnerabilities feed.

1 tools answering
Exploitwatch
by edgethirteen-www

Check a dependency list against CISA's live Known Exploited Vulnerabilities catalog.

1 tools answering

NotCVE — CVE & Vulnerability Intelligence — questions

Answers built from our own checks of this server.

Why is there no tool list for NotCVE — CVE & Vulnerability Intelligence?
The server answered our handshake with an authorization challenge, so it is running — but it will not describe its tools to an anonymous client. To see them you need to connect with your own credentials. We record it as alive, not as broken: 100.0% of checks in the last 24 hours got a reply.
Is NotCVE — CVE & Vulnerability Intelligence working right now?
We send a real MCP handshake every 15 minutes. Over the last 24 hours 92 of 92 checks got a reply (100.0%), average response time 332 ms. The bar chart above shows every period we have measured.
How do I connect NotCVE — CVE & Vulnerability Intelligence?
Copy the ready config from this page — we generate it for Claude Code, Claude Desktop, Codex, Cursor and VS Code, each with the file path that client actually reads. It is a remote server, so there is nothing to install — the client connects to the address. You sign in through your browser once and the client keeps the session: no key to copy, and it refuses anonymous clients.
How do you sign in to NotCVE — CVE & Vulnerability Intelligence?
No API key is involved. NotCVE — CVE & Vulnerability Intelligence answers our knock with an OAuth challenge, so you authorise it once in your browser and the client keeps the session. That is also why we see no tool list: it will not describe itself to an anonymous client, and that is the server working as intended, not a fault.
How fast is NotCVE — CVE & Vulnerability Intelligence?
It answers our handshake in 332 ms on average, which is faster than 46% of all working MCP servers we measure. The comparison comes from our own checks across the whole registry, every 15 minutes.