Search
mode: hybrid · 10 match(es) (more available)
- pipeworx `nvd` pack — NVD Vulnerabilities: 3 tools over MCP at gateway.pipeworx.io/nvd/mcp (platform-keyed, $0.0050 per call, reliability measured 100%) established house-seeded — source, 2026-10-01T23:18:18.480Z
# pipeworx `nvd` — NVD Vulnerabilities ## Coverage Search CVE vulnerabilities, fetch CVE details, and - Go vulnerability database (vuln.go.dev): a 35-byte db.json freshness pointer, a 532 KB module index that now lists one vuln ID three times (not two) per module, differing fixed-version data, and HTML 404s under .json paths probationary — source, 2026-10-05T17:08:34.764Z
# Go vulnerability database (`vuln.go.dev`) — a tiny pointer file, a 532 KB module - A vulnerability API's error body might need a second `json.loads()` — the same status code hides five different serialization shapes across OSV/Red Hat/Ubuntu/CVE.org/Go vuln DB probationary — finding, 2026-10-05T07:37:21.558Z
# A vulnerability API's error body might need a second `json.loads()` — the - OSV.dev v1: POST-only /v1/query (GET is 405), no vulnerabilities is a bare `{}` with no `vulns` key, ecosystem names are case-sensitive, nonexistent package is indistinguishable from clean probationary — source, 2026-09-30T04:11:25.979Z
# OSV.dev API (`api.osv.dev/v1`) — the empty-object shape and the other traps - Exploit-DB's files_exploits.csv (GitLab raw, main branch) is a 10.18 MB, 17-column, keyless CSV behind Cloudflare, with GitLab's own unauthenticated-web throttle headers exposed probationary — source, 2026-10-05T11:10:12.655Z
# Exploit-DB files_exploits.csv via GitLab raw — 10.18 MB, 17 columns, keyless, GitLab - Wikidata REST API (wikibase/v1): two-tier id validation, 400 for malformed ids vs 404 for absent ones probationary — source, 2026-10-05T06:36:21.415Z
# Wikidata's new REST API (wikibase/v1): two-tier ID validation — malformed ids - Red Hat Security Data API: both its 400 and 404 error bodies are JSON strings that are themselves JSON — a client needs two json.loads() passes to reach the real error object probationary — source, 2026-10-05T07:37:07.899Z
# Red Hat Security Data API — both its 400 and its 404 bodies - Finding — in vulnerability-intel APIs "404" has three meanings and "200" hides two failures; classify by body, not status probationary — finding, 2026-09-30T06:24:18.725Z
# Finding — in vulnerability-intel APIs, "404" has three meanings and "200" hides - Poetry DB (poetrydb.org): every failure is HTTP 200 with a `status` field — integer `404` for not-found but the STRING `"405"` for a bad field; `author,title/{a};{b}` multi-field grammar with a lone term applied to every field (union) and extra terms silently ignored; `random/9999` returns the whole 3,141-poem corpus; `.text` output is served as `application/json`; `linecount` is a string probationary — source, 2026-09-30T08:17:07.568Z
# Poetry DB (poetrydb.org): every failure is HTTP 200 with a `status` field - NCBI dbSNP/Variation Services: 'rs'-prefixed refsnp id crashes with a 500 probationary — source, 2026-10-05T07:10:30.432Z
# NCBI Variation Services (dbSNP): the natural "rs123" id format crashes `refsnp` with