450 packages matching “cves”
node-version-audit
v1.20250820.1 · 1 year ago
Audit your Node version for known CVEs and patches
No known vulnerabilities
@cvespy/cvescan
v0.3.0 · 18 days ago
cvescan by CVEspy — scan your dependencies for CVEs on every deploy
No known vulnerabilities
@guardbee/mcp-dependency-auditor
v0.2.2 · 5 days ago
MCP server that audits npm, pip, and cargo dependencies for known CVEs using the OSV database
No known vulnerabilities
@cyanheads/nist-nvd-mcp-server
v0.3.0 · 26 days ago
Search and audit CVEs by keyword, severity, CWE, CISA KEV status, and CPE via the NIST National Vulnerability Database. STDIO or Streamable HTTP.
No known vulnerabilities
@zerotoallai/cli
v0.2.27 · 7 months ago
Quick security check for MCP servers. Find CVEs before you connect.
No known vulnerabilities
sic-security
v7.0.0 · 2 months ago
SIC free code scanner — read-only static analysis for hardcoded secrets, dangerous patterns, and dependency CVEs. Zero runtime dependencies.
No known vulnerabilities
osv-ui-mcp
v2.0.0 · 20 days ago
MCP server for osv-ui — scan npm, Python, Go, Rust, Java, PHP, and Ruby projects for CVEs with a human-reviewed dashboard
No known vulnerabilities
sentinelpatch
v1.0.2 · 9 days ago
Determine which known CVEs in your Node.js dependencies are actually reachable and exploitable, using static call-graph analysis and an AI agent grounded in the real OSV advisory text.
No known vulnerabilities
ghostfree
v0.2.0 · 5 months ago
MCP server that scans your repo's dependencies for security vulnerabilities based on published CVEs.
No known vulnerabilities
create-qa-architect
v5.16.7 · 1 month ago
QA Architect - Security audit and quality automation for AI-generated codebases. Scans for OWASP Top-10 vulnerabilities, CVEs, and common vibe-coding mistakes.
No known vulnerabilities
cvescan
v0.2.0 · 18 days ago
cvescan — scan your dependencies for CVEs. Unscoped alias for @cvespy/cvescan (CVEspy, cvespy.com)
No known vulnerabilities
pledgeshield
v0.0.2 · 1 month ago
Personal device security auditor — finds what antivirus misses. Scans for misconfigurations, exposed services, unpatched CVEs, privilege escalation, and hardens 120+ attack surfaces.
No known vulnerabilities
@blamejs/exceptd-skills
v0.20.0 · 1 day ago
AI security skills grounded in mid-2026 threat reality, not stale framework documentation. 51 skills, 11 catalogs (1617 CVEs / 236 CWEs / 794 ATT&CK + ICS / 174 ATLAS / 468 D3FEND / 8889 RFCs), 35 jurisdictions, 10-class catalog gap detector + budget gate
No known vulnerabilities
safecheck
v0.1.0 · 24 days ago
Supply-chain risk scanner for npm, PyPI, and Maven packages - typosquats, maintainer takeovers, install-script surprises, known CVEs, and repo-wide dependency scanning. CLI for PackageSafe.
No known vulnerabilities
security-scan
v0.1.0 · 1 month ago
Unified security scanner (SAST + dependency CVEs + secrets) that orchestrates open-source engines and emits one report.
No known vulnerabilities
@weave_protocol/tollere
v0.2.3 · 3 months ago
Supply chain security for AI-generated code - scans packages, Docker images, and IDE extensions (VS Code, Cursor, JetBrains) before install for typosquats, CVEs, sandwich-pattern attacks, and Docker tag overwriting
No known vulnerabilities
nodejs-cve-checker
v1.0.0 · 2 years ago
A simple tool that validates CVEs were published to NVD after a Node.js Security Release.
No known vulnerabilities
@chengyixu/stackaudit
v1.1.0 · 4 months ago
Audit your npm dependencies for outdated packages, CVEs, and health score
No known vulnerabilities
vulnscope
v0.2.2 · 3 months ago
Scan lockfiles for known CVEs using the VulnScope database (OSV + KEV + EPSS).
No known vulnerabilities
cve-risk-scores
v0.0.5 · 2 years ago
Check risk scores for CVEs
No known vulnerabilities