NotCVE — CVE & Vulnerability Intelligence is answering right now. Last checked 5 min ago.
CVE & vulnerability search: 365k+ CVEs/NotCVEs, CVSS, EPSS, CISA KEV, exploits, patches, versions.
Today is the operative word: we check NotCVE — CVE & Vulnerability Intelligence every 15 minutes and re-read its code on every release. Watch it and you find out the day that stops being true.
Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 5 min ago.
claude mcp add vulnerability-intelligence --transport http https://notcve.org/mcp
{
"mcpServers": {
"vulnerability-intelligence": {
"url": "https://notcve.org/mcp"
}
}
}
[mcp_servers.vulnerability-intelligence]
url = "https://notcve.org/mcp"
{
"mcpServers": {
"vulnerability-intelligence": {
"url": "https://notcve.org/mcp"
}
}
}
{
"mcpServers": {
"vulnerability-intelligence": {
"url": "https://notcve.org/mcp"
}
}
}
This endpoint answered with an authorization challenge. The server is running, and it signs you in through your browser: there is no API key to paste.
| URL | Transport | State | Latency | Checked |
|---|---|---|---|---|
| https://notcve.org/mcp | streamable-http | sign-in | 804 ms | 5 min ago |
CVE intelligence: exploitation (KEV/EPSS), detection coverage, fixed versions. All tools keyless.
Defensive vulnerability intelligence search across public CVE/NVD and GitHub advisory APIs with CVSS
CISA Known Exploited Vulnerabilities catalog
Query CISA KEV / EPSS vulnerability feeds with full per-record provenance and auditable versions
CISA KEV catalog: active-exploit alerts, hourly. Register in-session — free testnet funds.
PostgreSQL security for AI agents: CVEs, yanked releases, exploits, and upgrade paths
Check dependencies against CISA's real Known Exploited Vulnerabilities feed.
Check a dependency list against CISA's live Known Exploited Vulnerabilities catalog.
Answers built from our own checks of this server.