CVE Stack Monitor + Guide
Know which CVEs actually affect your infrastructure.
Most CVE tools flood you with thousands of vulnerabilities and leave you to figure out what matters.
CVE Stack Monitor filters the noise for you.
It scans cybersecurity feeds every 6 hours, extracts CVEs, checks them against NVD, and compares them with your own technology stack.
Instead of getting 100 CVEs, you get the few that actually matter.
210 articles scanned. 38 CVEs found. 7 impact your stack.
What it does
- 6 security feeds — Monitors trusted cybersecurity and CERT sources.
- Stack filtering — Only reports CVEs matching your technologies.
- NVD enrichment — Adds CVSS scores and vulnerability details.
- Automatic CVE extraction — Finds CVE IDs directly from articles.
- AI analysis — Generates clear threat summaries and remediation steps.
- Critical alerts — Sends urgent notifications when serious CVEs affect your stack.
- Daily digest — Get a simple summary of what changed.
- Multi-channel alerts — Discord, Telegram, Slack, and email.
- Local AI support — Use Ollama or LM Studio to keep data on your infrastructure.
- Execution logging — Keep a record of every workflow run.
How it works
1. Ingest
Every 6 hours, the workflow collects articles from 6 curated security feeds and removes duplicates.
2. Enrich
Detected CVEs are checked against NVD for vulnerability details and CVSS scores.
The workflow then compares them against the stack keywords you define.
3. Analyze
AI turns relevant vulnerabilities into two simple briefings:
Critical Briefing — Immediate alert with risk, affected technology, and recommended actions.
Daily Digest — Summary of articles scanned, CVEs found, and vulnerabilities affecting your stack.
4. Alert
Send notifications to the channels your team already uses:
- Discord
- Telegram
- Slack
What's included
- Complete import-ready n8n workflow
- Step-by-step setup guide
- 20+ cybersecurity RSS feeds
- Custom stack keyword reference
- Configurable feeds, AI models, channels, and schedules
- Multi-channel alerting
- Local and cloud AI support
Built for
SOC teams · MSPs · Security consultants · Security-conscious organizations
Requirements
- n8n
- NVD API access
- One supported AI model
- Optional Discord, Telegram, Slack, or SMTP credentials
Supports Ollama, LM Studio, OpenAI, Anthropic, Groq, Mistral, Azure OpenAI, and AWS Bedrock.
Need help?
Want help deploying or customizing it? Get deployment & customization