cve-reachability
Investigate whether a specified CVE can be reached and triggered in a repository. Use for dependency-to-function tracing, parameter-level flow analysis, and evidence-backed reachability reports. Requires repository-specific inspection; does not provide an automatic call-graph engine.
Pinned to revision d090c6ad51e6, so it is the text this page describes rather than whatever the author pushed since.
Files
- skills/cve-reachability/SKILL.md
- skills/cve-reachability/references/acceptance.md
- skills/cve-reachability/references/report-contract.md
- skills/cve-reachability/references/tools.md
- skills/cve-reachability/references/workflow.md
- skills/cve-reachability/scripts/reachability-report.py
Every link opens the file at its source, pinned to the revision this page describes.