Kevscope

CVE patch priority from CISA KEV, FIRST EPSS, CVSS and SSVC; exploited-CVE feeds.

Should I use this

Quality & Safety

B
Description quality
83%
Schema completeness
79%
Naming quality
80%
Poisoning risk
100%
Permission match
100%
Protocol compliance
100%

Findings (1)

  • LOWTool 'epss_watchlist' description lacks action verbin epss_watchlist

Based on automated analysis of tool definitions and protocol compliance.

Context Cost

~457Tokens (tool definitions)
~660 BTypical response size
Minimal attention impact (0.36% of 128k context)

This is the approximate number of tokens consumed each time the server's tools are loaded into a model's context. Higher counts reduce the attention available for other tasks.

Install

One-Click Install

Add this to your `claude_desktop_config.json` file:

{
  "mcpServers": {
    "kevscope-api": {
      "url": "https://kevscope-api.cybermax-tools.workers.dev/mcp?via=mcp-registry"
    }
  }
}

Remote endpoints

https://kevscope-api.cybermax-tools.workers.dev/mcp?via=mcp-registrystreamable-http

What it can do

Tool inventory

Tools (3)

🟢 Read-only🟡 Write🔴 Delete⚪ Unknown
🟢cve_priority(cves, full)

Patch-priority verdict for 1-20 CVE IDs with evidence: CISA KEV status (date added, due date, ransomware use), FIRST EPSS probability, CVSS (CNA or CISA-ADP), CISA SSVC exploitation/automatable/impact, vendor, product and links. Sorted most urgent first.

Input Schema

{
  "type": "object",
  "properties": {
    "cves": {
      "type": "array",
      "items": {
        "type": "string"
      },
      "minItems": 1,
      "maxItems": 20,
      "description": "CVE IDs like CVE-2024-3400"
    },
    "full": {
      "type": "boolean",
      "default": false
    }
  },
  "required": [
    "cves"
  ]
}
🟢kev_recent(days, vendor, ransomware, limit)

CVEs added to the CISA Known Exploited Vulnerabilities catalog in the last N days, newest first, with due date, ransomware use and EPSS. Optional vendor/product text filter.

Input Schema

{
  "type": "object",
  "properties": {
    "days": {
      "type": "integer",
      "minimum": 1,
      "maximum": 365,
      "default": 30
    },
    "vendor": {
      "type": "string"
    },
    "ransomware": {
      "type": "boolean",
      "default": false
    },
    "limit": {
      "type": "integer",
      "minimum": 1,
      "maximum": 100,
      "default": 50
    }
  }
}
🟢epss_watchlist(year, limit, minEpss)

The highest-EPSS CVEs (most likely to be exploited in 30 days) that are not in CISA KEV yet. Defaults to this year's CVE IDs.

Input Schema

{
  "type": "object",
  "properties": {
    "year": {
      "type": "string",
      "description": "e.g. 2026, or all"
    },
    "limit": {
      "type": "integer",
      "minimum": 1,
      "maximum": 50,
      "default": 25
    },
    "minEpss": {
      "type": "number",
      "minimum": 0,
      "maximum": 1
    }
  }
}

Community

Rate this Server

Evidence

Recent observations

verifiedversion not recorded3 tools