Kevscope
CVE patch-priority API + MCP: CISA KEV, EPSS, CVSS, SSVC. Keys $19/mo; 200 free calls/day.
我该使用它吗
质量与安全性
发现(1)
- LOW在 epss_watchlist 中
基于对工具定义和协议合规性的自动分析。
上下文开销
这是每次将服务器的工具加载到模型上下文窗口时所消耗的大致 token 数。数值越高,可用于其他任务的注意力就越少。
安装
一键安装
将以下内容添加到你的 `claude_desktop_config.json` 文件中:
{
"mcpServers": {
"kevscope-api": {
"url": "https://kevscope-api.cybermax-tools.workers.dev/mcp?via=mcp-registry"
}
}
}远程端点
https://kevscope-api.cybermax-tools.workers.dev/mcp?via=mcp-registrystreamable-http它能做什么
工具清单
工具(3)
🟢cve_priority(cves, full)
Patch-priority verdict for 1-20 CVE IDs with evidence: CISA KEV status (date added, due date, ransomware use), FIRST EPSS probability, CVSS (CNA or CISA-ADP), CISA SSVC exploitation/automatable/impact, vendor, product and links. Sorted most urgent first.
输入模式
{
"type": "object",
"properties": {
"cves": {
"type": "array",
"items": {
"type": "string"
},
"minItems": 1,
"maxItems": 20,
"description": "CVE IDs like CVE-2024-3400"
},
"full": {
"type": "boolean",
"default": false
}
},
"required": [
"cves"
]
}🟢kev_recent(days, vendor, ransomware, limit)
CVEs added to the CISA Known Exploited Vulnerabilities catalog in the last N days, newest first, with due date, ransomware use and EPSS. Optional vendor/product text filter.
输入模式
{
"type": "object",
"properties": {
"days": {
"type": "integer",
"minimum": 1,
"maximum": 365,
"default": 30
},
"vendor": {
"type": "string"
},
"ransomware": {
"type": "boolean",
"default": false
},
"limit": {
"type": "integer",
"minimum": 1,
"maximum": 100,
"default": 50
}
}
}🟢epss_watchlist(year, limit, minEpss)
The highest-EPSS CVEs (most likely to be exploited in 30 days) that are not in CISA KEV yet. Defaults to this year's CVE IDs.
输入模式
{
"type": "object",
"properties": {
"year": {
"type": "string",
"description": "e.g. 2026, or all"
},
"limit": {
"type": "integer",
"minimum": 1,
"maximum": 50,
"default": 25
},
"minEpss": {
"type": "number",
"minimum": 0,
"maximum": 1
}
}
}社区
证据