@pipeworx/cisa-kev

Connect: https://pipeworx.io/mcp — every tool in the catalog, including @pipeworx/cisa-kev’s. Install: one-click buttons

Connect to just the @pipeworx/cisa-kev pack

https://gateway.pipeworx.io/cisa-kev/mcp — only @pipeworx/cisa-kev’s own tools, nothing else in the catalog.

No MCP client? Skip the connection: POST https://gateway.pipeworx.io/v1/tools/search_packs {"query":"..."} to find a tool below, GET /v1/tools/<name> for its schema, POST the same URL with arguments for the data — see For AI agents.

Tools: 4

CISA Known Exploited Vulnerabilities catalog MCP — actively exploited CVEs with required-action dates. Keyless. Cached 1h in-pack.

Tools

  • catalog() — full KEV catalog (metadata + entries)
  • entry(cve_id) — single KEV entry by CVE id
  • vendors() — list distinct vendors with entries
  • recent(days) — entries added in the last N days

Data source

https://www.cisa.gov/sites/default/files/feeds/known_exploited_vulnerabilities.json

Tools

  • catalog — Full KEV catalog (metadata + entries).
  • entry — Single KEV entry by CVE id.
  • vendors — Return all distinct vendor/project names in the CISA KEV catalog sorted by entry count descending, with per-vendor counts. Useful for identifying which vendors have the most actively-exploited vulnera
  • recent — Entries added in the last N days.

Tools

  • catalog — Full KEV catalog (metadata + entries).
  • entry — Single KEV entry by CVE id.
  • recent — Entries added in the last N days.
  • vendors — Return all distinct vendor/project names in the CISA KEV catalog sorted by entry count descending, with per-vendor counts. Useful for identifying which vendors have the most actively-exploited vulnera

Regenerated from source · build October 2, 2026