CVE Find - Vulnerabilities Database

CVE Find is a real-time vulnerability database indexing 393 885 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 4403 new CVEs were published in the last 7 days.

Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).

CVE Find
With CVE Find, explore the world's largest database of vulnerabilities.

393 885 vulnerabilities

Last update : 2026-09-17 02h42 +00:00
Common Vulnerabilities and Exposures (CVE), is a list of publicly disclosed computer security flaws.
View CVE 2025
0
Created 7 days ago
0
Updated 7 days ago
0
Created 30 days ago
0
Updated 30 days ago

Free CVE Email Notifications

Get free real-time alerts on new vulnerabilities with CVE Find.
Stay protected and informed instantly !

The last 10 High CVE

Total 393 885 CVE in Datadase
CVE ID Published Description Score Severity

CVE-2026-87963

2026-09-17
07h16 +00:00
The Yo WordPress plugin from 1.1 through 1.3.1 does not sanitize or parameterize the username reques...
8.6
High

CVE-2026-86801

2026-09-17
07h16 +00:00
The To Do List Member WordPress plugin from 1.4 through 1.6 ships a file upload endpoint that does n...
8.8
High

CVE-2026-87796

2026-09-17
05h17 +00:00
The Multi Uploader for Gravity Forms plugin for WordPress is vulnerable to Arbitrary File Upload in ...
File Inclusion
9.8
Critical

CVE-2026-25283

2026-09-17
05h17 +00:00
Memory Corruption when copying unverified data from an external source exceeds the allocated buffer ...
8.8
High

CVE-2026-92593

2026-09-16
22h18 +00:00
Craft CMS versions 5.10.0 through 5.10.12 contain an incomplete fix for CVE-2026-55794: the Controll...
Code Injection
8.8
High

CVE-2026-92592

2026-09-16
22h18 +00:00
Craft CMS 4.8.0 through 4.18.5 and 5.0.0 through 5.10.12 sign an authenticated user's attacker-contr...
8.8
High

CVE-2026-92580

2026-09-16
22h18 +00:00
In AVideo through 29.0, the CloneSite plugin is vulnerable to stored OS command injection. In plugin...
OS Command Injection
8.8
High

CVE-2026-92576

2026-09-16
22h18 +00:00
HKUDS nanobot before 0.3.0 contains a server-side request forgery vulnerability in the WebFetchTool ...
Server-Side Request Forgery - SSRF
8.6
High

CVE-2026-61594

2026-09-16
22h17 +00:00
djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered pe...
Authorization problems
9.1
Critical

CVE-2026-61599

2026-09-16
22h11 +00:00
djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered pe...
8.8
High

Distribution by CVSS scores


CVE created per quarter since 1999

Frequently asked questions about CVE Find

CVE Find is a cybersecurity vulnerability search engine that aggregates and indexes CVE (Common Vulnerabilities and Exposures), CWE, CAPEC and CPE data from MITRE, NVD and CISA. It allows you to search, filter and monitor security flaws via configurable real-time alerts.

A CVE (Common Vulnerability and Exposure) is a unique identifier assigned to a publicly disclosed computer security flaw. Each CVE is managed by MITRE Corporation and referenced in the NIST National Vulnerability Database (NVD) with a CVSS score evaluating its severity from 0 to 10.

CVSS (Common Vulnerability Scoring System) is an international standard that evaluates the severity of a vulnerability on a scale of 0 to 10. A score of 9 to 10 is rated Critical, 7 to 8.9 High, 4 to 6.9 Medium, and 0.1 to 3.9 Low.

CISA KEV (Known Exploited Vulnerabilities) is a catalog maintained by the US Cybersecurity Agency (CISA) listing CVE vulnerabilities actively exploited in real cyberattacks. US federal organizations are required to remediate them within a mandated deadline.

CVE Find offers an email alert system: create a free account, then configure alerts by CVSS score (weekly delivery) or by CWE category. Paid plans add alerts by keyword, by vendor/product (CPE), based on the CISA KEV list or the EPSS score, as well as daily and hourly frequencies.