CVE Find - Vulnerabilities Database

CVE Find is a real-time vulnerability database indexing 400 086 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 3233 new CVEs were published in the last 7 days.

Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).

CVE Find
With CVE Find, explore the world's largest database of vulnerabilities.

400 086 vulnerabilities

Last update : 2026-09-30 21h44 +00:00
Common Vulnerabilities and Exposures (CVE), is a list of publicly disclosed computer security flaws.
View CVE 2025
0
Created 7 days ago
0
Updated 7 days ago
0
Created 30 days ago
0
Updated 30 days ago

Free CVE Email Notifications

Get free real-time alerts on new vulnerabilities with CVE Find.
Stay protected and informed instantly !

The last 10 High CVE

Total 400 086 CVE in Datadase
CVE ID Published Description Score Severity

CVE-2026-101283

2026-09-30
21h32 +00:00
iperf3 3.20–3.21 (esnet/iperf) has a pre-auth heap buffer overflow in decrypt_rsa_message(): a 256...
9.2
Critical

CVE-2026-102149

2026-09-30
21h17 +00:00
Kiteworks Email Protection Gateway did not sufficiently restrict which account a certificate could b...
Authorization problems
9.4
Critical

CVE-2026-102147

2026-09-30
21h17 +00:00
A stored cross-site scripting (XSS) weakness in Kiteworks Core could allow an unauthenticated attack...
Cross-site Scripting
9.3
Critical

CVE-2026-102125

2026-09-30
21h17 +00:00
The sandbox that isolates document conversion on a Kiteworks appliance did not fully confine the cod...
8.8
High

CVE-2026-102121

2026-09-30
21h17 +00:00
A form-rendering interface in the Advanced Forms component is reachable without authentication so th...
Authorization problems
8.6
High

CVE-2026-102120

2026-09-30
21h17 +00:00
A privilege escalation vulnerability in Kiteworks could have allowed an attacker who had already obt...
OS Command InjectionImproper Privilege Management
8.8
High

CVE-2026-102115

2026-09-30
21h16 +00:00
Kiteworks Core did not correctly validate a parameter submitted to the password reset workflow. An u...
9.8
Critical

CVE-2026-102106

2026-09-30
21h16 +00:00
Improper authentication in a Kiteworks Email Protection Gateway administrative service. An administr...
Authorization problems
9.1
Critical

CVE-2026-102105

2026-09-30
21h16 +00:00
Kiteworks Email Protection Gateway before version 9.5.0 is vulnerable to Server-Side Request Forgery...
Server-Side Request Forgery - SSRF
9.1
Critical

CVE-2026-102104

2026-09-30
21h16 +00:00
Kiteworks Email Protection Gateway before version 9.5.0 is vulnerable to Server-Side Request Forgery...
Server-Side Request Forgery - SSRF
9.1
Critical

Distribution by CVSS scores


CVE created per quarter since 1999

Frequently asked questions about CVE Find

CVE Find is a cybersecurity vulnerability search engine that aggregates and indexes CVE (Common Vulnerabilities and Exposures), CWE, CAPEC and CPE data from MITRE, NVD and CISA. It allows you to search, filter and monitor security flaws via configurable real-time alerts.

A CVE (Common Vulnerability and Exposure) is a unique identifier assigned to a publicly disclosed computer security flaw. Each CVE is managed by MITRE Corporation and referenced in the NIST National Vulnerability Database (NVD) with a CVSS score evaluating its severity from 0 to 10.

CVSS (Common Vulnerability Scoring System) is an international standard that evaluates the severity of a vulnerability on a scale of 0 to 10. A score of 9 to 10 is rated Critical, 7 to 8.9 High, 4 to 6.9 Medium, and 0.1 to 3.9 Low.

CISA KEV (Known Exploited Vulnerabilities) is a catalog maintained by the US Cybersecurity Agency (CISA) listing CVE vulnerabilities actively exploited in real cyberattacks. US federal organizations are required to remediate them within a mandated deadline.

CVE Find offers an email alert system: create a free account, then configure alerts by CVSS score (weekly delivery) or by CWE category. Paid plans add alerts by keyword, by vendor/product (CPE), based on the CISA KEV list or the EPSS score, as well as daily and hourly frequencies.