cve_id
string
How to use it
cve_id is exposed by the Attestd MCP MCP server. Add the server to your MCP client (Claude Desktop, Cursor, Windsurf and others), and the cve_id tool becomes available to the model automatically. See the full listing for setup details and every tool this server provides.
FULL ATTESTD MCP LISTINGOther tools in Attestd MCP (26)
CISA KEV signal
Attestd product slugs affected by this CVE
true only when all matching CVEs require authentication
Synthesis confidence 0.0–1.0
Number of bundled infrastructure products
CVE identifier
CVE IDs contributing to the risk assessment
CVE infrastructure slugs with display names
NVD description text
true when the CVE is in Attestd's database; false on 404 (not an error)
array
No arguments. With an API key, returns live JSON from GET /v1/products:
Explanation when outsideCoverage is true
true if the product is not covered. Unknown risk, not safe.
string
Array of { slug, display } entries
true if any matching CVE is remotely exploitable
critical \
"live" when fetched from the API
Monitored PyPI/npm packages
Combined count of CVE products and supply chain packages
Package name integrity: typosquat or AI-hallucinated name (kind, resembles, likelyintended)
string