cve-poc-generator

Installation
SKILL.md

CVE PoC Generator

Research a CVE by ID, generate a standalone Python proof-of-concept script, and produce a detailed vulnerability report.

Workflow

  1. NVD Lookup - Query NVD API v2.0 for the CVE ID. Extract CVSS v3.1 score/vector, CWE IDs, CPE matches, advisory URLs, and patch links.
  2. Advisory Research - Deep-dive vendor advisories, GitHub security advisories, Exploit-DB, and published write-ups. Identify root cause, affected versions, and attack vector details.
  3. PoC Generation - Write a standalone Python script (poc.py) that demonstrates the vulnerability safely. Follow the script standards in reference/poc-methodology.md.
  4. Report Generation - Write a comprehensive markdown report (report.md) with metadata, root cause analysis, risk assessment, and remediation guidance.

NVD Data to Collect

Field Source Usage
CVE ID NVD Primary identifier
CVSS v3.1 Score + Vector NVD Risk scoring
CWE ID(s) NVD Vulnerability classification
CPE Matches NVD Affected products and versions
Related skills
Installs
39
GitHub Stars
266
First Seen
Mar 21, 2026