NetSight beta

CVE Search

Find known vulnerabilities by CVE ID, vendor, product or keyword. Severity, CVSS, references and publication dates aggregated into one clean result.

Sort: Min CVSS:

About CVE search

Common Vulnerabilities and Exposures (CVE) is the de-facto global registry of publicly disclosed security flaws. Search by CVE ID for a specific vulnerability, or by product or keyword to survey known issues in a technology stack.

Enter a CVE ID for the full record: description, CVSS vectors, weakness types, EPSS exploitation probability, CISA KEV status with due date and required action, affected products and every reference. Keyword results carry the same KEV and EPSS signals so you can prioritise at a glance.

CVSS scoring

Each CVE carries a CVSS (Common Vulnerability Scoring System) score from 0.0 to 10.0:

  • 9.0-10.0 critical: trivially exploitable, broad impact.
  • 7.0-8.9 high: significant risk, patch promptly.
  • 4.0-6.9 medium: meaningful risk, prioritize by exposure.
  • 0.1-3.9 low: limited impact or hard to exploit.

When it's useful

  • Quickly looking up "what is CVE-2021-44228" before digging deeper.
  • Scanning known CVEs for a product you run (e.g. Apache, nginx, OpenSSL) before an upgrade.
  • Briefing teammates on a newly disclosed vulnerability.

Questions

Where does the data come from?
Keyword searches merge NVD, Shodan CVEDB, GitHub Security Advisories and CIRCL. A single CVE lookup combines Shodan CVEDB with the NVD record and adds EPSS from FIRST and the CISA KEV catalog.
How do I search by product?
Use the product or vendor name as a keyword, e.g. 'log4j', 'nginx', 'openssl'. On a CVE detail page the affected products are clickable and start a product search.
What do KEV and EPSS mean?
KEV marks entries in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. EPSS is the estimated probability that a CVE gets exploited within the next 30 days, with the percentile against all CVEs.
Can I filter by severity?
Yes. Use the Min CVSS chips for 4+, 7+ or 9+, sort by highest CVSS, or switch on KEV only to see just actively exploited entries.