CVE Find - Vulnerabilities Database

CVE Find is a real-time vulnerability database indexing 349 620 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 1877 new CVEs were published in the last 7 days.

Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).

CVE Find
With CVE Find, explore the world's largest database of vulnerabilities.

349 620 vulnerabilities

Last update : 2026-05-12 10h46 +00:00
Common Vulnerabilities and Exposures (CVE), is a list of publicly disclosed computer security flaws.
View CVE 2025
0
Created 7 days ago
0
Updated 7 days ago
0
Created 30 days ago
0
Updated 30 days ago

Free CVE Email Notifications

Get free real-time alerts on new vulnerabilities with CVE Find.
Stay protected and informed instantly !

The last 10 High CVE

Total 349 620 CVE in Datadase
CVE ID Published Description Score Severity

CVE-2026-6001

2026-05-12
10h16 +00:00
Authorization bypass through User-Controlled key vulnerability in ABIS Technology Ltd. Co. BAPSİS a...
Authorization problems
8.8
High

CVE-2026-41551

2026-05-12
10h16 +00:00
A vulnerability has been identified in ROS# (All versions < V2.2.2). Affected versions contain a pat...
9.1
Critical

CVE-2026-25787

2026-05-12
10h16 +00:00
Affected devices do not properly validate and sanitize Technology Object (TO) name rendered on the "...
Cross-site Scripting
9.1
Critical

CVE-2026-25786

2026-05-12
10h16 +00:00
Affected devices do not properly validate and sanitize PLC/station name rendered on the "communicati...
Cross-site Scripting
9.1
Critical

CVE-2026-22924

2026-05-12
10h16 +00:00
A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected applicati...
Authorization problems
9.1
Critical

CVE-2025-6577

2026-05-12
10h16 +00:00
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability i...
SQL Injection
9.8
Critical

CVE-2025-40949

2026-05-12
10h16 +00:00
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX ...
OS Command Injection
9.1
Critical

CVE-2025-40946

2026-05-12
10h16 +00:00
A vulnerability has been identified in blueplanet 100 NX3 M8 (All versions), blueplanet 100 TL3 GEN2...
8.3
High

CVE-2026-39432

2026-05-12
09h16 +00:00
Missing Authorization vulnerability in Arraytics Timetics allows Exploiting Incorrectly Configured A...
Authorization problems
8.2
High

CVE-2026-35227

2026-05-12
07h14 +00:00
An unauthenticated remote attacker may exhaust all available TCP connections in the CODESYS Modbus T...
8.2
High

Distribution by CVSS scores


CVE created per quarter since 1999

Frequently asked questions about CVE Find

CVE Find is a cybersecurity vulnerability search engine that aggregates and indexes CVE (Common Vulnerabilities and Exposures), CWE, CAPEC and CPE data from MITRE, NVD and CISA. It allows you to search, filter and monitor security flaws via configurable real-time alerts.

A CVE (Common Vulnerability and Exposure) is a unique identifier assigned to a publicly disclosed computer security flaw. Each CVE is managed by MITRE Corporation and referenced in the NIST National Vulnerability Database (NVD) with a CVSS score evaluating its severity from 0 to 10.

CVSS (Common Vulnerability Scoring System) is an international standard that evaluates the severity of a vulnerability on a scale of 0 to 10. A score of 9 to 10 is rated Critical, 7 to 8.9 High, 4 to 6.9 Medium, and 0.1 to 3.9 Low.

CISA KEV (Known Exploited Vulnerabilities) is a catalog maintained by the US Cybersecurity Agency (CISA) listing CVE vulnerabilities actively exploited in real cyberattacks. US federal organizations are required to remediate them within a mandated deadline.

CVE Find offers a free alert system: create an account, then configure alerts by keyword, by vendor/product (CPE), by CWE category, by CVSS score or based on the CISA KEV list. Notifications are sent by email as soon as a new CVE matches your criteria.