vulnerability-intelligence

Ranks vulnerabilities using CVSS, EPSS, KEV, and weaponisation data.

15|5|Updated Apr 6, 2026
One-click install
npx skills add https://github.com/Liberty91LTD/cti-skills --skill vulnerability-intelligence
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: vulnerability-intelligence
Source: https://github.com/Liberty91LTD/cti-skills/tree/main/skills/vulnerability-intelligence
Command: npx skills add https://github.com/Liberty91LTD/cti-skills --skill vulnerability-intelligence

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Prioritises vulnerabilities by integrating CVSS, EPSS, KEV, weaponisation status, and patch intelligence to focus remediation on the most credible risks.

Core Features & Use Cases

  • CVSS & EPSS synthesis: Combines base scores with exploitation likelihood to rank risk.
  • KEV awareness: Flags known exploited vulnerabilities for immediate attention.
  • Weaponisation tracking: Accounts for active exploits and PoCs to adjust priority.
  • Patch-intelligence workflow: Produces actionable remediation plans and timelines.
  • Use Case: Security teams triage CVEs in a large fleet and auto-generate prioritized patch backlogs.

Quick Start

Provide CVE details to generate a prioritized remediation plan using the vulnerability-intelligence framework.

Frequently Asked Questions about vulnerability-intelligence

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I prioritize vulnerabilities using CVSS, EPSS, and KEV data?

Vulnerability prioritisation combines CVSS base scores, EPSS exploitation likelihood, and KEV awareness to rank risk. This synthesis focuses remediation efforts on the most credible threats rather than relying on severity scores alone.

What is the best way to triage a large fleet of CVEs for patch management?

Triage large CVE fleets by integrating weaponisation status and patch intelligence with CVSS and EPSS scores. This approach auto-generates a prioritized patch backlog, producing actionable remediation plans and timelines for security teams.

Does vulnerability prioritisation account for active exploits and PoCs?

Vulnerability prioritisation tracks weaponisation status by accounting for active exploits and proof-of-concept code. This tracking adjusts the priority level of CVEs to ensure immediate attention for threats being actively exploited in the wild.

Can I generate a structured remediation plan from CVE details?

Providing CVE details generates a structured prioritisation matrix and vulnerability assessment template. These outputs include sources, recommended actions, and patch-intelligence workflows to drive rapid remediation planning.

How does KEV awareness impact vulnerability triage in incident response?

KEV awareness flags known exploited vulnerabilities for immediate attention during incident response. This ensures security operations rapidly triage CVEs that pose active threats, integrating this status with EPSS and CVSS data for comprehensive risk ranking.

When do I need data-driven vulnerability prioritisation for security operations?

Data-driven vulnerability prioritisation is needed when security operations require rapid triage across numerous CVEs. It synthesizes multiple risk metrics to produce a structured matrix, ensuring remediation focuses on the most credible risks.