450 packages matching “cves”
@vctools/deps
v0.1.0 · 4 months ago
Dependency Auditor — checks installed npm packages for CVEs, deprecations, and abandonment.
No known vulnerabilities
web-secure-verification
v1.0.2 · 2 months ago
Security scanning CLI for React and Next.js — detects CVEs, secrets, license risks, supply chain threats, hydration bugs, RSC boundary violations, and more.
No known vulnerabilities
threatcluster-mcp
v0.2.2 · 5 days ago
MCP server for the ThreatCluster threat-intelligence API: incident clusters, entity profiles, CVEs and ransomware leak-site victims as tools for Claude, Cursor, VS Code and any MCP client
No known vulnerabilities
@luciddr34m3r/nvd
v0.0.1 · 5 years ago
A JavaScript library for dealing with NVD, CVEs, and CPE strings.
No known vulnerabilities
tiny-emitter-cve-fixes
v2.3.0 · 5 months ago
A fork of tiny-emitter by Scott Corgan with fixed CVEs and updated build process.
No known vulnerabilities
@hhannis/bun-scanner
v1.1.0 · 5 months ago
Bun security scanner — OSV CVEs, publish age, install scripts, and more
No known vulnerabilities
botwire-mcp
v0.7.1 · 1 month ago
301 real-time data wires for AI agents. Paid per call via x402 (USDC on Base), no API key, no signup, and no free data tier. Primary sources, not a crawler index: SEC EDGAR, the Federal Reserve, BLS/BEA, federal courts, Congress, DOJ, FDA, CISA/CVEs, USGS
No known vulnerabilities
sys-premium
v2.0.3 · 4 months ago
Security-first, modular Node.js system information library. Zero CVEs. Fast Windows support. No build step.
No known vulnerabilities
@phoenixaihub/mcp-security-scanner
v0.1.0 · 4 months ago
Security scanner for MCP servers — detect vulnerabilities, CVEs, and attack vectors
No known vulnerabilities
@firstpick/pi-skill-vulnerability-scanner
v0.1.5 · 1 month ago
Agents should invoke this skill when checking CVEs or known vulnerabilities in installed packages, dependencies, Docker images, OS packages, exposed services, or software versions. Produces severity-rated scan reports.
No known vulnerabilities
dynamicfeed-mcp
v1.0.1 · 3 months ago
Local stdio MCP server for Dynamic Feed — live data AI models lack (prices, weather, CVEs & exploited vulns, internet outages, global disasters, satellites/space, world news + more). Bridges any MCP client to dynamicfeed.ai; works through firewalls that b
No known vulnerabilities
ossrisk
v0.9.0 · 2 months ago
Scan dependencies for supply-chain risk: EOL versions, CVEs, abandonment, typosquatting, license compliance, maintainer takeover patterns, and OPA policy gating
No known vulnerabilities
@hailbytes/sbom-diff
v1.0.1 · 4 months ago
Diff two CycloneDX or SPDX SBOMs and produce human-readable change reports. Highlights added, removed, upgraded dependencies and new CVEs.
No known vulnerabilities
supply-chain-scan
v0.4.0 · 1 month ago
Morning supply-chain safety scan for npm, PyPI, Docker, Go, Rust and NuGet projects (monorepo-aware, recursive) — known-malicious packages + CVEs + freshly-published deps + release-cooldown/digest pinning + install-time protection (Aikido Safe Chain) chec
No known vulnerabilities
chainsentry
v0.2.0 · 3 months ago
Supply-chain scanner that audits npm dependencies for typosquats, malicious install scripts, license risk, and known CVEs.
No known vulnerabilities
@brickhouse-tech/angular-lts
v1.10.4 · 1 month ago
[](https://www.npmjs.com/package/@brickhouse-tech/angular-lts) [](https://www.npmjs.com/package/@
No known vulnerabilities
@clinetools/dep-scanner
v0.1.0 · 7 months ago
Scan package.json, requirements.txt, Cargo.toml, and go.mod for known CVEs. Offline database of vulnerabilities, no API needed.
No known vulnerabilities
n8n-nodes-github-advisories-scraper
v0.1.0 · 2 months ago
Scrape the GitHub Advisory Database (GHSA) — security advisories mapped to CVEs, affected packages, version ranges, CVSS and CWE. Filter by ecosystem (npm, pip, maven...) and severity. Official keyless API. Schedule as a dependency-vulnerability monitor.
No known vulnerabilities
@aayushcodebook/agentscan
v0.1.0 · 3 months ago
Cross-agent security posture scanner for self-hosted AI agents (OpenClaw, Hermes). 19 checks across exposure, gateway auth, secrets, CVEs, and malicious skills (taint + prompt-injection analysis) — graded A–F, mapped to CWE/OWASP-LLM/MITRE ATLAS. Zero dep
No known vulnerabilities
@seenty/mcp
v0.2.0 · 3 months ago
Seenty MCP server — query your monitors, uptime and security findings (secrets, cloud misconfigs, CVEs) from AI clients
No known vulnerabilities