AutoCVE — security grade SAFE, quality 62/100

Security audit verdict: SAFE · quality 62/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by larlarua · Agent Tool · ★ 1.3k

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is AutoCVE safe to install? View the security audit →

About AutoCVE

AutoCVE - 一键挖掘 CVE,筛项目、审源码、验漏洞、出报告,全流程自动化 📚 项目文档 · ✨ 核心能力 · 🚀 快速开始 · 🏆 CVE 成果 简体中文 | English 📚 项目文档 📖 用户使用手册 涵盖环境部署、模型配置、项目导入、Agent 审计、一键 CVE、漏洞管理和 Skills 管理完整使用说明,并提供各功能界面预览。 🏗️ 架构设计文档 介绍 AutoCVE 的整体架构、Agent 工作流、工具编排、权限保护、Agent Runtime 以及 ReAct Loop 状态机设计。 🔌 接口文档 提供后端 API、数据结构、请求参数及接口调试说明。 ✨ 核心能力 🚀 一键完成 CVE 挖掘 实现从项目筛选、仓库导入、审计任务创建、Agent 漏洞挖掘到 CVE 申报报告生成的全流程自动化。用户仅需复制报告内容并提交,即可完成后续 CVE 申请。 🤖 Multi-Agent 协同审计 通过 Orchestrator 统一调度 Recon、Scan、Tria

agentai-securitycode-auditcvefastapillm-agentmulti-agentpenetration-testingreactsecurity-audit

Quick Facts

Stars1,278
Forks94
LanguagePython
CategoryAgent Tool
LicenseAGPL-3.0
Quality Score61.7512970334022/100
Open Issues12
Last Updated2026-08-07
Created2026-06-15
Platformspython
Est. Tokens~17k

Compatible Skills

These tools work well together with AutoCVE for enhanced workflows:

  • agent-audit — semantic(0.30)+complementary+rare_topics+same_lang+similar_pop+shared_platform (65%)
  • plamen — semantic(0.28)+complementary+rare_topics+same_lang+similar_pop+shared_platform (64%)
  • repo-forensics — semantic(0.25)+complementary+rare_topics+same_lang+similar_pop+shared_platform (63%)

AutoCVE alternative? Top 6 similar tools

Looking for a AutoCVE alternative? If you're comparing AutoCVE with other agent tool tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • JoySafeter by jd-opensource · ⭐ 300

    🚀 JoySafeter: An enterprise AI Agent Platform—Not just chatting. building、running、testing, and tracing autono

  • open-kritt by Kritt-ai · ⭐ 1.9k

    Open-source, self-hosted AI vulnerability research tool that orchestrates agents to find and validate security

  • CyberStrike by CyberStrikeus · ⭐ 1.9k

    Open-source AI-augmented offensive security harness. 13+ autonomous agents, 150+ LLM providers, 5,300+ models,

  • medusa by Pantheon-Security · ⭐ 962

    AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions

  • openpencil by ZSeven-W · ⭐ 5.4k

    The world's first open-source AI-native vector design tool and the first to feature concurrent Agent Teams. De

  • AReaL by inclusionAI · ⭐ 5.2k

    The RL Bridge for LLM-based Agent Applications. Made Simple & Flexible.

More Agent Tool Tools

Explore other popular agent tool tools:

View all Agent Tool tools →

Popular Python Agent Tools

Frequently Asked Questions

What is AutoCVE?

AutoCVE is Agent-driven automated CVE discovery platform for source code auditing, vulnerability verification, and report generation.. It is categorized as a Agent Tool with 1.3k GitHub stars.

What programming language is AutoCVE written in?

AutoCVE is primarily written in Python. It covers topics such as agent, ai-security, code-audit.

How do I install or use AutoCVE?

You can find installation instructions and usage details in the AutoCVE GitHub repository at github.com/larlarua/AutoCVE. The project has 1.3k stars and 94 forks, indicating an active community.

What license does AutoCVE use?

AutoCVE is released under the AGPL-3.0 license, making it free to use and modify according to the license terms.

What are the best alternatives to AutoCVE?

The top alternatives to AutoCVE on Agent Skills Hub include JoySafeter, open-kritt, CyberStrike. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

View on GitHub → Browse Agent Tool tools