OSV Vulnerability Database

Integrates with the Open Source Vulnerabilities (OSV) database to enable querying vulnerabilities by package versions, commits, or

stackloklabs 36
Claude CodeClaude DesktopGeneric
View source ↗

The OSV MCP server provides AI assistants with access to the Open Source Vulnerabilities (OSV) database through a standardized interface. Built by StacklokLabs, this implementation exposes three primary tools: querying vulnerabilities for specific package versions or commits, batch querying for multiple packages simultaneously, and retrieving detailed information about specific vulnerabilities by ID. The server is written in Go using the mark3labs/mcp-go library and includes comprehensive CI/CD workflows for building, testing, and security scanning. It's particularly valuable for developers and security professionals who need to integrate vulnerability checking into their AI-assisted workflows for software composition analysis and security auditing.

Source

Repository: https://github.com/stackloklabs/osv-mcp

Maintain OSV Vulnerability Database?

Let people know it's listed here — add the badge (live metrics, light/dark aware) or a plain link to your README or docs.

[OSV Vulnerability Database on getagentictools](https://getagentictools.com/mcp/stackloklabs-osv-mcp?ref=badge)