
Pulls the CISA Known Exploited Vulnerabilities catalog into your LLM workflow so you can query CVEs that are actively being exploited in the wild and check BOD 22-01 remediation deadlines for federal and critical infrastructure environments. You get three main operations: query the KEV catalog by CVE or vendor, check whether a vulnerability has a compliance deadline, and export KEV data as SBOM artifacts. Useful when you're triaging vulnerabilities and need to prioritize based on real-world exploitation rather than just CVSS scores, or when you're automating compliance checks against the federal mandate. The EPSS overlay mentioned in the description suggests risk scoring integration, though the docs focus primarily on the core KEV lookup and deadline tracking features.