Open-source CVE MCP server turns Claude into a security analyst with 28 tools across 21 APIs
tom_doerr · x · 2026-09-10
The open-source cve-mcp-server project (1.5k GitHub stars) is a production-grade Model Context Protocol server that turns Claude into a full-spectrum security analyst.
- Automates CVE triaging by querying NVD, EPSS, and CISA KEV in parallel to compute composite risk scores and deliver prioritized recommendations
- Ships 28 security intelligence tools plus a one-call triagecve orchestrator, covering 21 APIs including MITRE ATT&CK, Shodan, VirusTotal, and GreyNoise
- Replaces the old workflow of juggling 15+ browser tabs with a single correlated answer in seconds
- Built with Python, FastMCP, httpx, aiosqlite, Pydantic v2, and defusedxml
More from coding & agent
- Claude reliably finds holes in CAD models and places screws on command — _Stocko_ · 2026-09-10
- How 'just change one thing' becomes a whole situation in AI-assisted coding — mohamedmansour · 2026-09-10
- Workaround: get Opus 3 to use web search in Claude via a third-party connector — repligate · 2026-09-10
- Codex CLI 0.154.0 Ships GPT-6-Astra, Experimental Worktree Isolation — TheMoonMidas · 2026-09-10
- Codex Tip: A Cost-Efficient Luna + Sol Agent Tree Orchestrated by Astra — TheMoonMidas · 2026-09-10
- OpenAI claims 3.1 agent-workdays per human workday, but what does that metric mean? — OliviaYii · 2026-09-10