Malwarebytes Vulnerability Assessment API

The Vulnerability Assessment API from Malwarebytes — 5 operation(s) for vulnerability assessment.

Business capability
Vulnerability Management BC-620.40

Operations 5

POST /oneview/v1/vulnerability-assessment/report Get vulnerability assessment report #
POST /oneview/v1/vulnerability-assessment/cve-stats Get vulnerability assessment CVE statistics #
POST /oneview/v1/vulnerability-assessment/details Get vulnerability assessment details #
POST /oneview/v1/vulnerability-assessment/software-stats Get vulnerability assessment software statistics #
POST /oneview/v1/vulnerability-assessment/summary Get vulnerability assessment summary #

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/malwarebytes-vulnerability-assessment-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

malwarebytes-vulnerability-assessment-api-openapi.yml Raw ↑
openapi: 3.2.0
info:
  title: ThreatDown Vulnerability Assessment API
  description: '# Introduction

    ThreatDown OneView APIs provide you resources to remotely manage the security of your devices from code.'
  version: 1.0.0
  x-logo:
    altText: ThreatDown logo
    url: https://assets.threatdown.com/hermes/ThreatDown_Horizontal_Navy.png
    backgroundColor: '#FFFFFF'
servers:
- url: https://api.threatdown.com
tags:
- name: Vulnerability Assessment
paths:
  /oneview/v1/vulnerability-assessment/report:
    post:
      description: Get vulnerability assessment report for accounts
      summary: Get vulnerability assessment report
      security:
      - client_credentials:
        - read
      - user_permissions:
        - vulnerabilities.view
      status:
        outage:
        - auth
        - search_stateless
      parameters:
      - name: authorization
        required: true
        in: header
        description: Authorization token
        schema:
          type: string
      requestBody:
        content:
          application/json:
            schema:
              type: object
              allOf:
              - type: object
                required:
                - account_ids
                properties:
                  account_ids:
                    type: array
                    title: The account ids to filter your search
                    minItems: 1
                    items:
                      type: string
                      title: Account id items (Ex. "9256034b-7967-4253-a5d9-260663e4fa4f")
                      pattern: '[\da-fA-F]{8}-?[\da-fA-F]{4}-?[\da-fA-F]{4}-?[\da-fA-F]{4}-?[\da-fA-F]{12}$'
                      examples:
                      - 9256034b-7967-4253-a5d9-260663e4fa4f
              properties:
                aggregate:
                  type: boolean
                  default: false
                  description: When true, the report is aggregated across all account_ids. When false, results are returned per account.
      responses:
        '200':
          description: response schema
          content:
            application/json:
              schema:
                type: object
                properties:
                  results:
                    type: array
                    items:
                      type: object
                      properties:
                        account_id:
                          type: string
                        aggregated:
                          type: boolean
                        endpoints_total:
                          type: number
                        accounts_total:
                          type: number
                        cves:
                          type: object
                          properties:
                            endpoints:
                              type: number
                            total:
                              type: number
                          required:
                          - endpoints
                          - total
                        critical_cves:
                          type: object
                          properties:
                            endpoints:
                              type: number
                            total:
                              type: number
                            total_within_thirty_days:
                              type: number
                            endpoints_within_thirty_days:
                              type: number
                          required:
                          - endpoints
                          - total
                          - total_within_thirty_days
                        critical_os_patches:
                          type: object
                          properties:
                            endpoints:
                              type: number
                            total:
                              type: number
                          required:
                          - endpoints
                          - total
                        cisa_cves:
                          type: object
                          properties:
                            endpoints:
                              type: number
                            total:
                              type: number
                            total_within_twenty_one_days:
                              type: number
                            endpoints_total:
                              type: number
                            endpoints_percentage:
                              type: number
                          required:
                          - endpoints
                          - total
                          - total_within_twenty_one_days
                          - endpoints_total
                          - endpoints_percentage
                        known_ransomware_campaign_use:
                          type: object
                          properties:
                            endpoints:
                              type: number
                            total:
                              type: number
                          required:
                          - endpoints
                          - total
                        os_patches:
                          type: object
                          properties:
                            endpoints_percentage:
                              type: number
                          required:
                          - endpoints_percentage
                        cves_by_severity:
                          type: object
                          properties:
                            critical_percentage:
                              type: number
                            high_percentage:
                              type: number
                            medium_percentage:
                              type: number
                            low_percentage:
                              type: number
                            unknown_percentage:
                              type: number
                          required:
                          - critical_percentage
                          - high_percentage
                          - medium_percentage
                          - low_percentage
                          - unknown_percentage
                        critical_software:
                          type: array
                          items:
                            type: object
                            properties:
                              display_product:
                                type: string
                              endpoints:
                                type: number
                              cves:
                                type: number
                              cisa_cves:
                                type: number
                            required:
                            - display_product
                            - endpoints
                            - cves
                            - cisa_cves
                        high_risk_sites:
                          type: array
                          items:
                            type: object
                            properties:
                              account_id:
                                type: string
                              critical_cves:
                                type: number
                              known_ransomware_campaign_use:
                                type: number
                              critical_os_patches:
                                type: number
                              cisa_cves:
                                type: number
                              endpoints:
                                type: number
                              affected_endpoints:
                                type: number
                            required:
                            - critical_cves
                            - known_ransomware_campaign_use
                            - critical_os_patches
                            - cisa_cves
                            - endpoints
                      required:
                      - endpoints_total
                      - accounts_total
                      - cves
                      - critical_cves
                      - critical_os_patches
                      - cisa_cves
                      - known_ransomware_campaign_use
                      - os_patches
                      - cves_by_severity
                      - critical_software
                      - high_risk_sites
                required:
                - results
      tags:
      - Vulnerability Assessment
      operationId: api.rmm.vulnerability-assessment.report
  /oneview/v1/vulnerability-assessment/cve-stats:
    post:
      description: Get vulnerability assessment CVE statistics for accounts
      summary: Get vulnerability assessment CVE statistics
      security:
      - client_credentials:
        - read
      - user_permissions:
        - vulnerabilities.view
      status:
        outage:
        - auth
        - search_stateless
      parameters:
      - name: authorization
        required: true
        in: header
        description: Authorization token
        schema:
          type: string
      requestBody:
        content:
          application/json:
            schema:
              type: object
              allOf:
              - type: object
                required:
                - account_ids
                properties:
                  account_ids:
                    type: array
                    title: The account ids to filter your search
                    minItems: 1
                    items:
                      type: string
                      title: Account id items (Ex. "9256034b-7967-4253-a5d9-260663e4fa4f")
                      pattern: '[\da-fA-F]{8}-?[\da-fA-F]{4}-?[\da-fA-F]{4}-?[\da-fA-F]{4}-?[\da-fA-F]{12}$'
                      examples:
                      - 9256034b-7967-4253-a5d9-260663e4fa4f
              properties:
                cve_id:
                  type: string
                  description: The CVE ID to retrieve stats for
      responses:
        '200':
          description: response schema
          content:
            application/json:
              schema:
                type: object
                properties:
                  total:
                    type: number
                  accounts:
                    type: number
                  endpoints:
                    type: number
      tags:
      - Vulnerability Assessment
      operationId: api.rmm.vulnerability-assessment.cve.stats
  /oneview/v1/vulnerability-assessment/details:
    post:
      description: Get vulnerability assessment details for accounts
      summary: Get vulnerability assessment details
      security:
      - client_credentials:
        - read
      - user_permissions:
        - vulnerabilities.view
      status:
        outage:
        - auth
        - search_stateless
      parameters:
      - name: authorization
        required: true
        in: header
        description: Authorization token
        schema:
          type: string
      requestBody:
        content:
          application/json:
            schema:
              type: object
              allOf:
              - type: object
                required:
                - account_ids
                properties:
                  account_ids:
                    type: array
                    title: The account ids to filter your search
                    minItems: 1
                    items:
                      type: string
                      title: Account id items (Ex. "9256034b-7967-4253-a5d9-260663e4fa4f")
                      pattern: '[\da-fA-F]{8}-?[\da-fA-F]{4}-?[\da-fA-F]{4}-?[\da-fA-F]{4}-?[\da-fA-F]{12}$'
                      examples:
                      - 9256034b-7967-4253-a5d9-260663e4fa4f
      responses:
        '200':
          description: response schema
          content:
            application/json:
              schema:
                type: object
                additionalProperties:
                  type: object
                  properties:
                    severity:
                      type: object
                      additionalProperties:
                        type: object
                        properties:
                          total:
                            type: number
                        required:
                        - total
                        additionalProperties: false
                    machine_id_total:
                      type: number
                    known_ransomware_campaign_use_total:
                      type: number
                    critical_os_patches_total:
                      type: number
                    last_asset_scan_at:
                      type:
                      - string
                      - 'null'
                    has_va:
                      type: boolean
                    has_vpm:
                      type: boolean
      tags:
      - Vulnerability Assessment
      operationId: api.rmm.vulnerability-assessment.details
  /oneview/v1/vulnerability-assessment/software-stats:
    post:
      description: Get vulnerability assessment software statistics for accounts
      summary: Get vulnerability assessment software statistics
      security:
      - client_credentials:
        - read
      - user_permissions:
        - vulnerabilities.view
      status:
        outage:
        - auth
        - search_stateless
      parameters:
      - name: authorization
        required: true
        in: header
        description: Authorization token
        schema:
          type: string
      requestBody:
        content:
          application/json:
            schema:
              type: object
              required:
              - account_ids
              properties:
                account_ids:
                  type: array
                  title: The account ids to filter your search
                  minItems: 1
                  items:
                    type: string
                    title: Account id items (Ex. "9256034b-7967-4253-a5d9-260663e4fa4f")
                    pattern: '[\da-fA-F]{8}-?[\da-fA-F]{4}-?[\da-fA-F]{4}-?[\da-fA-F]{4}-?[\da-fA-F]{12}$'
                    examples:
                    - 9256034b-7967-4253-a5d9-260663e4fa4f
      responses:
        '200':
          description: response schema
          content:
            application/json:
              schema:
                type: object
                properties:
                  updatable_software_percentage:
                    type: number
                    description: The percentage of software with available updates.
      tags:
      - Vulnerability Assessment
      operationId: api.rmm.vulnerability-assessment.software.stats
  /oneview/v1/vulnerability-assessment/summary:
    post:
      description: Get vulnerability assessment summary for accounts
      summary: Get vulnerability assessment summary
      security:
      - client_credentials:
        - read
      - user_permissions:
        - vulnerabilities.view
      status:
        outage:
        - auth
        - search_stateless
      parameters:
      - name: authorization
        required: true
        in: header
        description: Authorization token
        schema:
          type: string
      requestBody:
        content:
          application/json:
            schema:
              type: object
              allOf:
              - type: object
                required:
                - account_ids
                properties:
                  account_ids:
                    type: array
                    title: The account ids to filter your search
                    minItems: 1
                    items:
                      type: string
                      title: Account id items (Ex. "9256034b-7967-4253-a5d9-260663e4fa4f")
                      pattern: '[\da-fA-F]{8}-?[\da-fA-F]{4}-?[\da-fA-F]{4}-?[\da-fA-F]{4}-?[\da-fA-F]{12}$'
                      examples:
                      - 9256034b-7967-4253-a5d9-260663e4fa4f
      responses:
        '200':
          description: response schema
          content:
            application/json:
              schema:
                type: object
                definitions:
                  total_counts:
                    type: object
                    properties:
                      total:
                        type: number
                      accounts:
                        type: number
                    required:
                    - total
                    - accounts
                properties: {}
      tags:
      - Vulnerability Assessment
      operationId: api.rmm.vulnerability-assessment.summary
components:
  securitySchemes:
    client_credentials:
      type: oauth2
      flows:
        clientCredentials:
          tokenUrl: /oneview/oauth2/token
          scopes:
            read: Read data of your Nebula account
            write: Write access. Create Users, Sites, Policies, Exclusions and other resources
            execute: Issue jobs on your endpoints, like Scan, Reboot or Isolate.
    user_permissions:
      type: http
      scheme: bearer