CVE Find - Vulnerabilities Database

CVE Find is a real-time vulnerability database indexing 398 114 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 2675 new CVEs were published in the last 7 days.

Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).

CVE Find
With CVE Find, explore the world's largest database of vulnerabilities.

398 114 vulnerabilities

Last update : 2026-09-25 21h42 +00:00
Common Vulnerabilities and Exposures (CVE), is a list of publicly disclosed computer security flaws.
View CVE 2025
0
Created 7 days ago
0
Updated 7 days ago
0
Created 30 days ago
0
Updated 30 days ago

Free CVE Email Notifications

Get free real-time alerts on new vulnerabilities with CVE Find.
Stay protected and informed instantly !

The last 10 High CVE

Total 398 114 CVE in Datadase
CVE ID Published Description Score Severity

CVE-2026-100391

2026-09-25
21h17 +00:00
MediaFlow Proxy through 2.4.9 contains a server-side request forgery vulnerability in the /proxy rou...
Server-Side Request Forgery - SSRF
8.2
High

CVE-2026-100369

2026-09-25
21h17 +00:00
CliInvoke and its formerly named `AlastairLundy.CliInvoke` package are .NET libraries for invoking c...
8.4
High

CVE-2026-100368

2026-09-25
20h17 +00:00
CliInvoke is a .NET library for invoking command-line programs, and its `CliInvoke.Specializations` ...
OS Command Injection
8.4
High

CVE-2026-97064

2026-09-25
19h17 +00:00
X-SpringBoot through 6.0 ships with a hardcoded static master login verification code 172839 enabled...
9.1
Critical

CVE-2026-97063

2026-09-25
19h17 +00:00
X-SpringBoot through 6.0 returns login verification codes in HTTP responses from unauthenticated end...
Authorization problems
9.1
Critical

CVE-2026-94445

2026-09-25
17h17 +00:00
A malicious txtar could escape the intended execution context and force arbitrary writes to the play...
8.8
High

CVE-2026-61525

2026-09-25
17h11 +00:00
Zammad is a web based open source helpdesk/customer support system. In 7.0.2 and 7.1.0, zammad's ses...
Directory Traversal
8.8
High

CVE-2026-92161

2026-09-25
16h17 +00:00
FriendsOfFlarum OAuth allows users to log in to Flarum with GitHub, Twitter, Facebook, and other pro...
9.8
Critical

CVE-2026-62262

2026-09-25
16h17 +00:00
Piwigo is a full featured open source photo gallery application for the web. In 17.0.0beta1 and earl...
SQL Injection
9.1
Critical

CVE-2026-42322

2026-09-25
16h17 +00:00
Piwigo is a full featured open source photo gallery application for the web. Prior to 16.4.0, admin/...
File Inclusion
9.1
Critical

Distribution by CVSS scores


CVE created per quarter since 1999

Frequently asked questions about CVE Find

CVE Find is a cybersecurity vulnerability search engine that aggregates and indexes CVE (Common Vulnerabilities and Exposures), CWE, CAPEC and CPE data from MITRE, NVD and CISA. It allows you to search, filter and monitor security flaws via configurable real-time alerts.

A CVE (Common Vulnerability and Exposure) is a unique identifier assigned to a publicly disclosed computer security flaw. Each CVE is managed by MITRE Corporation and referenced in the NIST National Vulnerability Database (NVD) with a CVSS score evaluating its severity from 0 to 10.

CVSS (Common Vulnerability Scoring System) is an international standard that evaluates the severity of a vulnerability on a scale of 0 to 10. A score of 9 to 10 is rated Critical, 7 to 8.9 High, 4 to 6.9 Medium, and 0.1 to 3.9 Low.

CISA KEV (Known Exploited Vulnerabilities) is a catalog maintained by the US Cybersecurity Agency (CISA) listing CVE vulnerabilities actively exploited in real cyberattacks. US federal organizations are required to remediate them within a mandated deadline.

CVE Find offers an email alert system: create a free account, then configure alerts by CVSS score (weekly delivery) or by CWE category. Paid plans add alerts by keyword, by vendor/product (CPE), based on the CISA KEV list or the EPSS score, as well as daily and hourly frequencies.