Look twice.Find the gem.

AI agents and MCP servers, each published with its source and what the checks found.

Marketplace

  • Everything
  • AI agents
  • Apps
  • MCP servers
  • Templates
  • What people want
  • What changed this week
  • The verification standard
  • The ooruby Index
  • Servers that publish no source
  • Reliability guides
  • What the catalogue holds
  • Sell here

Our library

  • Everything, in one place
  • Guides
  • Glossary
  • Calculators
  • Checklists and cheat sheets
  • Community

ooruby

  • Home
  • For teams
  • Site status
  • Company projects
  • RSS feed

Verification records what our published tests found on a specific version at a specific date. It is not a warranty, and it does not certify that software is free of defects.

Rubricv1.0
AI agentsAppsMCP serversTemplatesWantedCommunityOur library
Sign inSell
Glossary
Security findings

CVE

Common Vulnerabilities and Exposures

A public identifier for one specific, disclosed vulnerability in one product.

A CVE record names a vulnerability, the product and versions it affects and, usually, the version that fixes it. Identifiers look like CVE-2025-53355 and are assigned by organisations authorised under the programme MITRE operates.

A CVE is about one instance. Its cousin the CWE names the kind of mistake, and the same kind of mistake can need a new CVE every time it turns up somewhere else, including in a fork that copied the original code before the fix.

Why it matters

It is how a dependency advisory reaches the listing pages here: a published advisory against a version is a fact the catalogue checks nightly.

The mistake everyone makes

Assuming a fork inherits its original's fixes. A fork taken before the fix keeps the vulnerability and none of the advisory.

Related terms

CWE
A catalogue of the kinds of mistake that cause vulnerabilities, each with a number.
Supply chain attack
Compromising something you already trust rather than attacking you directly.
Pinned version
Installing one exact published release rather than whatever is current.
Finding
One issue raised by verification, with a severity and a mapping to a standard weakness class.
Previous
Context window
Next
CWE

See CVE on a real listing

Every term here shows up in the catalogue next to a real result, with the findings published and the limits stated. Free to browse, no account needed.

Open the catalogue