Nvd Cve MCP Server

MCP server for searching and retrieving CVE vulnerability information from NVD

Local serverstdio

What is the Nvd Cve MCP server?

MCP server for searching and retrieving CVE vulnerability information from NVD. Exposed over MCP by the nvd cve mcp server, that capability becomes something an assistant can invoke while it works, not something you go and do afterwards.

What it actually does

A Model Context Protocol (MCP) server for retrieving and displaying CVE vulnerability information from the National Vulnerability Database (NVD). Features dual data sources with NVD API and web scraping fallback.

Its toolset

Everything the assistant can do here goes through one of these:

  • Prerequisites — The Prerequisites tool exposed by this server

Configuration

  • Node.js >= 18.0.0 - npm or yarn

Adding it to your client

Installation goes through your MCP client rather than a global install: point it at nvd-cve-mcp-server on npm and it is fetched when the client starts. The copy-paste blocks for Claude Desktop, Claude Code and Cursor are further down this page.

When to reach for it

Among the developer tooling options, the useful question is rarely "what can it do" but "what does it cost you to run" — permissions, credentials, and how much of your context its toolset consumes. Nvd Cve's toolset — Prerequisites — is a fair guide to whether it matches your workflow. It is maintained by socteam-ai; worth a glance at recent repository activity before you build anything load-bearing on it.

This entry was verified against Nvd Cve's own documentation before publication; SyncDev keeps the directory reviewed rather than auto-generated.

Caveats

  • It runs with your machine's permissions. That is convenient and also the reason to think about what you point it at before you approve a tool call.
  • MCP clients confirm each tool call by default. Leave that on until you have watched what the nvd cve mcp server does with a few real requests.

Available tools

ToolWhat it does
PrerequisitesThe Prerequisites tool exposed by this server.

How to install the Nvd Cve MCP server

{
  "mcpServers": {
    "nvd-cve": {
      "command": "npx",
      "args": ["-y", "nvd-cve-mcp-server"]
    }
  }
}

Configuration as documented by the project. Restart the client after saving.

Configuration

  • Node.js >= 18.0.0 - npm or yarn

Example prompts to try

  • Use Nvd Cve to Prerequisites.

Frequently asked questions

It connects Nvd Cve to MCP-compatible AI assistants such as Claude and Cursor, exposing 1 tool (Prerequisites) that the assistant can call on your behalf. Instead of copying data back and forth by hand, the assistant works with Nvd Cve directly.