Cursor EchelonGraph CVE & Exposure vendor_advisories_for_cve
How to: Cursor EchelonGraph CVE & Exposure vendor_advisories_for_cve
Add EchelonGraph CVE & Exposure to Cursor
-
01
Open ~/.cursor/mcp.json and merge this in. Keep any servers already there.
{
"mcpServers": {
"echelongraph-mcp": {
"url": "https://mcp.echelongraph.io/mcp"
}
}
}
-
02
Save the file and restart Cursor.
-
03
Ask for something vendor_advisories_for_cve does. Cursor lists the server's tools on connect and calls vendor_advisories_for_cve itself — you do not invoke it by name.
-
04
If nothing happens, check the server is running and that EchelonGraph CVE & Exposure's identifier in your config matches the one above exactly.
Use .cursor/mcp.json in a project root instead to scope it to that project. Cursor merges both. Cursor docs
Set these first
EchelonGraph CVE & Exposure will not start until these are set, so vendor_advisories_for_cve never becomes available.
-
ECHELONGRAPH_API_BASE -
ECHELONGRAPH_API_TIMEOUT_MS
Same tool, other clients
This list was read from the server itself, by connecting to it and calling tools/list on 4 October 2026. It is what
the server actually exposes, not what its listing claims.
Mutating and Read-only are read off each tool's name, not its schema — a hint, not a guarantee. The registry stores tool names only; connect the server for its live schemas.