CVE Find - Vulnerabilities Database

CVE Find is a real-time vulnerability database indexing 367 813 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 2657 new CVEs were published in the last 7 days.

Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).

CVE Find
With CVE Find, explore the world's largest database of vulnerabilities.

367 813 vulnerabilities

Last update : 2026-07-20 19h44 +00:00
Common Vulnerabilities and Exposures (CVE), is a list of publicly disclosed computer security flaws.
View CVE 2025
0
Created 7 days ago
0
Updated 7 days ago
0
Created 30 days ago
0
Updated 30 days ago

Free CVE Email Notifications

Get free real-time alerts on new vulnerabilities with CVE Find.
Stay protected and informed instantly !

The last 10 High CVE

Total 367 813 CVE in Datadase
CVE ID Published Description Score Severity

CVE-2026-63108

2026-07-20
19h17 +00:00
Roo Code through 3.54.0 contains a command injection vulnerability in the auto-approve execute featu...
8.8
High

CVE-2026-12341

2026-07-20
19h17 +00:00
This vulnerability impacts all versions of IdentityIQ and allows an unauthenticated attacker unautho...
Authorization problems
8.8
High

CVE-2026-39878

2026-07-20
18h16 +00:00
Chamilo LMS versions 1.11.38 and earlier contain a stored cross-site scripting vulnerability in the ...
Cross-site Scripting
9.3
Critical

CVE-2026-8170

2026-07-20
17h34 +00:00
The mv, cp, and rm file utilities exposed within the ExtremeXOS (EXOS) shell environment fail to saf...
8.7
High

CVE-2026-54051

2026-07-20
17h17 +00:00
Network-AI is a TypeScript/Node.js multi-agent orchestrator. Prior to version 5.9.1, the agent sandb...
OS Command Injection
9.9
Critical

CVE-2026-44178

2026-07-20
17h17 +00:00
xrdp is an open source RDP server. Versions 0.10.6 and prior contain a heap-based buffer overflow vu...
8.8
High

CVE-2026-41521

2026-07-20
17h17 +00:00
xrdp is an open source RDP server. Versions 0.10.6 and prior contain an integer overflow vulnerabili...
8.2
High

CVE-2026-41252

2026-07-20
17h17 +00:00
xrdp is an open source RDP server. Versions 0.10.6 and prior contain a missing bounds check in xrdp,...
9.8
Critical

CVE-2026-35048

2026-07-20
17h17 +00:00
The Piwigo installer in versions 16.3.0 and earlier accepts POST parameters for database configurati...
9.8
Critical

CVE-2026-63429

2026-07-20
16h17 +00:00
HeyForm is an open-source form builder. Prior to version 3.0.0-rc.9, `POST /api/upload` has no authe...
Authorization problemsFile Inclusion
8.6
High

Distribution by CVSS scores


CVE created per quarter since 1999

Frequently asked questions about CVE Find

CVE Find is a cybersecurity vulnerability search engine that aggregates and indexes CVE (Common Vulnerabilities and Exposures), CWE, CAPEC and CPE data from MITRE, NVD and CISA. It allows you to search, filter and monitor security flaws via configurable real-time alerts.

A CVE (Common Vulnerability and Exposure) is a unique identifier assigned to a publicly disclosed computer security flaw. Each CVE is managed by MITRE Corporation and referenced in the NIST National Vulnerability Database (NVD) with a CVSS score evaluating its severity from 0 to 10.

CVSS (Common Vulnerability Scoring System) is an international standard that evaluates the severity of a vulnerability on a scale of 0 to 10. A score of 9 to 10 is rated Critical, 7 to 8.9 High, 4 to 6.9 Medium, and 0.1 to 3.9 Low.

CISA KEV (Known Exploited Vulnerabilities) is a catalog maintained by the US Cybersecurity Agency (CISA) listing CVE vulnerabilities actively exploited in real cyberattacks. US federal organizations are required to remediate them within a mandated deadline.

CVE Find offers a free alert system: create an account, then configure alerts by keyword, by vendor/product (CPE), by CWE category, by CVSS score or based on the CISA KEV list. Notifications are sent by email as soon as a new CVE matches your criteria.