CVE Find - Vulnerabilities Database

CVE Find is a real-time vulnerability database indexing 342 945 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 1543 new CVEs were published in the last 7 days.

Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).

CVE Find
With CVE Find, explore the world's largest database of vulnerabilities.

342 945 vulnerabilities

Last update : 2026-04-08 18h45 +00:00
Common Vulnerabilities and Exposures (CVE), is a list of publicly disclosed computer security flaws.
View CVE 2025
0
Created 7 days ago
0
Updated 7 days ago
0
Created 30 days ago
0
Updated 30 days ago

Free CVE Email Notifications

Get free real-time alerts on new vulnerabilities with CVE Find.
Stay protected and informed instantly !

The last 10 High CVE

Total 342 945 CVE in Datadase
CVE ID Published Description Score Severity

CVE-2026-5208

2026-04-08
12h16 +00:00
Command injection in alerts in CoolerControl/coolercontrold <4.0.0 allows authenticated attackers to...
OS Command Injection
8.2
High

CVE-2026-3243

2026-04-08
12h16 +00:00
The Advanced Members for ACF plugin for WordPress is vulnerable to arbitrary file deletion due to in...
Directory Traversal
8.8
High

CVE-2026-25776

2026-04-08
09h16 +00:00
Movable Type provided by Six Apart Ltd. contains a code injection vulnerability which may allow an a...
Code Injection
9.8
Critical

CVE-2026-3535

2026-04-08
07h16 +00:00
The DSGVO Google Web Fonts GDPR plugin for WordPress is vulnerable to arbitrary file upload due to m...
File Inclusion
9.8
Critical

CVE-2026-24913

2026-04-08
06h16 +00:00
SQL Injection vulnerability exists in MATCHA INVOICE 2.6.6 and earlier. If this vulnerability is exp...
SQL Injection
8.8
High

CVE-2026-4003

2026-04-08
05h16 +00:00
The Users manager – PN plugin for WordPress is vulnerable to Privilege Escalation via Arbitrary Us...
Authorization problems
9.8
Critical

CVE-2026-3296

2026-04-08
02h16 +00:00
The Everest Forms plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, ...
9.8
Critical

CVE-2026-3499

2026-04-08
01h24 +00:00
The Product Feed PRO for WooCommerce by AdTribes – Product Feeds for WooCommerce plugin for WordPr...
Cross-Site Request Forgery - CSRF
8.8
High

CVE-2026-4788

2026-04-08
01h16 +00:00
IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.37 stores sensitive information in log files that co...
8.4
High

CVE-2026-3357

2026-04-08
01h16 +00:00
IBM Langflow Desktop 1.6.0 through 1.8.2 Langflow could allow an authenticated user to execute arbit...
8.8
High

Distribution by CVSS scores


CVE created per quarter since 1999

Frequently asked questions about CVE Find

CVE Find is a cybersecurity vulnerability search engine that aggregates and indexes CVE (Common Vulnerabilities and Exposures), CWE, CAPEC and CPE data from MITRE, NVD and CISA. It allows you to search, filter and monitor security flaws via configurable real-time alerts.

A CVE (Common Vulnerability and Exposure) is a unique identifier assigned to a publicly disclosed computer security flaw. Each CVE is managed by MITRE Corporation and referenced in the NIST National Vulnerability Database (NVD) with a CVSS score evaluating its severity from 0 to 10.

CVSS (Common Vulnerability Scoring System) is an international standard that evaluates the severity of a vulnerability on a scale of 0 to 10. A score of 9 to 10 is rated Critical, 7 to 8.9 High, 4 to 6.9 Medium, and 0.1 to 3.9 Low.

CISA KEV (Known Exploited Vulnerabilities) is a catalog maintained by the US Cybersecurity Agency (CISA) listing CVE vulnerabilities actively exploited in real cyberattacks. US federal organizations are required to remediate them within a mandated deadline.

CVE Find offers a free alert system: create an account, then configure alerts by keyword, by vendor/product (CPE), by CWE category, by CVSS score or based on the CISA KEV list. Notifications are sent by email as soon as a new CVE matches your criteria.