vulnfeed-mcp is an MCP server that analyzes project lockfiles to detect vulnerable dependencies. It prioritizes issues using EPSS exploit probability scores, recommends specific fix versions, and supports SBOM formats. Designed for developers and security teams integrating vulnerability intelligence directly into AI coding assistants and development workflows.
vulnfeed-mcp is an Other dev tools project. Identifying, prioritizing, and fixing vulnerable dependencies in software projects. It is built as an open-source project for developers. vulnfeed-mcp is open source under the MIT license. It ships for the web, the command line, and API, and it can be self-hosted.
It is developed by Novadyne, and it first shipped in 2026. The project is developed in the open on GitHub with 14 commits in the last 90 days. Key capabilities include lockfile analysis, EPSS prioritization, and fix recommendations. It exposes integrations via an MCP server.
Summary written by a language model from the project’s public pages.
What PulseGate has recorded for this listing
Closest matches by what these projects do