cve-research

Research known vulnerabilities for project dependencies using multiple sources.

Safety Notice

This listing is imported from skills.sh public index metadata. Review upstream SKILL.md and repository scripts before running.

Copy this and send it to your AI assistant to learn

Install skill "cve-research" with this command: npx skills add fusengine/agents/fusengine-agents-cve-research

CVE Research Skill

Overview

Research known vulnerabilities for project dependencies using multiple sources.

Data Sources

Source API Coverage

NVD nvd.nist.gov/vuln/api All CVEs

OSV.dev api.osv.dev npm, PyPI, Go, crates, Maven

GitHub Advisory github.com/advisories npm, pip, composer, cargo

Exa Search Via MCP Real-time web search

Workflow

  • Extract dependencies from project (package.json, etc.)

  • Query each source for known CVEs

  • Cross-reference findings across sources

  • Prioritize by CVSS score and exploitability

  • Report with fix versions and workarounds

Query Strategy

For each dependency:

  • Search OSV.dev first (fastest, most accurate for packages)

  • Cross-check NVD for CVSS scoring

  • Use Exa for recent advisories not yet in databases

  • Check GitHub Advisory for maintainer responses

Severity Mapping

CVSS Score Severity Action

9.0 - 10.0 CRITICAL Fix immediately

7.0 - 8.9 HIGH Fix before merge

4.0 - 6.9 MEDIUM Plan fix

0.1 - 3.9 LOW Document

References

  • CVE APIs Reference

  • Query Templates

Source Transparency

This detail page is rendered from real SKILL.md content. Trust labels are metadata-based hints, not a safety guarantee.

Related Skills

Related by shared tags or category signals.

Research

research

No summary provided by upstream source.

Repository SourceNeeds Review
Automation

laravel-livewire

No summary provided by upstream source.

Repository SourceNeeds Review
Automation

laravel-blade

No summary provided by upstream source.

Repository SourceNeeds Review
Automation

laravel-architecture

No summary provided by upstream source.

Repository SourceNeeds Review