CVE Find - Vulnerabilities Database

CVE Find is a real-time vulnerability database indexing 357 887 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 1735 new CVEs were published in the last 7 days.

Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).

CVE Find
With CVE Find, explore the world's largest database of vulnerabilities.

357 887 vulnerabilities

Last update : 2026-06-15 17h14 +00:00
Common Vulnerabilities and Exposures (CVE), is a list of publicly disclosed computer security flaws.
View CVE 2025
0
Created 7 days ago
0
Updated 7 days ago
0
Created 30 days ago
0
Updated 30 days ago

Free CVE Email Notifications

Get free real-time alerts on new vulnerabilities with CVE Find.
Stay protected and informed instantly !

The last 10 High CVE

Total 357 887 CVE in Datadase
CVE ID Published Description Score Severity

CVE-2026-9862

2026-06-15
16h16 +00:00
Fortra's  Core Privileged Access Manager (BoKS) contains an OS command injection vulnerability in ...
OS Command Injection
9.8
Critical

CVE-2026-5242

2026-06-15
14h16 +00:00
Improper neutralization of formula elements in a CSV file vulnerability in MIA Technology Inc. Pizzy...
8.8
High

CVE-2026-52704

2026-06-15
14h16 +00:00
Improper Control of Generation of Code ('Code Injection') vulnerability in Edgar Rojas WooCommerce P...
Code Injection
10
Critical

CVE-2026-49111

2026-06-15
14h16 +00:00
Incorrect Privilege Assignment vulnerability in ThemeGrill Masteriyo - LMS allows Privilege Escalati...
Improper Privilege Management
8.8
High

CVE-2026-49062

2026-06-15
14h16 +00:00
Authentication Bypass Using an Alternate Path or Channel vulnerability in WP Engine Faust.Js allows ...
8.8
High

CVE-2018-25436

2026-06-15
14h16 +00:00
WordPress Plugin Baggage Freight Shipping Australia 0.1.0 contains an unrestricted file upload vulne...
File Inclusion
9.8
Critical

CVE-2016-20075

2026-06-15
14h16 +00:00
WordPress Ultimate Product Catalog 3.8.6 contains an arbitrary file upload vulnerability that allows...
Authorization problems
8.8
High

CVE-2016-20073

2026-06-15
14h16 +00:00
Answer My Question 1.3 plugin for WordPress contains an SQL injection vulnerability that allows unau...
SQL Injection
8.2
High

CVE-2016-20072

2026-06-15
14h16 +00:00
BBS e-Franchise 1.1.1 plugin for WordPress contains an SQL injection vulnerability that allows unaut...
SQL Injection
8.2
High

CVE-2016-20071

2026-06-15
14h16 +00:00
The 404 Redirection Manager plugin version 1.0 for WordPress contains an unauthenticated SQL injecti...
SQL Injection
8.2
High

Distribution by CVSS scores


CVE created per quarter since 1999

Frequently asked questions about CVE Find

CVE Find is a cybersecurity vulnerability search engine that aggregates and indexes CVE (Common Vulnerabilities and Exposures), CWE, CAPEC and CPE data from MITRE, NVD and CISA. It allows you to search, filter and monitor security flaws via configurable real-time alerts.

A CVE (Common Vulnerability and Exposure) is a unique identifier assigned to a publicly disclosed computer security flaw. Each CVE is managed by MITRE Corporation and referenced in the NIST National Vulnerability Database (NVD) with a CVSS score evaluating its severity from 0 to 10.

CVSS (Common Vulnerability Scoring System) is an international standard that evaluates the severity of a vulnerability on a scale of 0 to 10. A score of 9 to 10 is rated Critical, 7 to 8.9 High, 4 to 6.9 Medium, and 0.1 to 3.9 Low.

CISA KEV (Known Exploited Vulnerabilities) is a catalog maintained by the US Cybersecurity Agency (CISA) listing CVE vulnerabilities actively exploited in real cyberattacks. US federal organizations are required to remediate them within a mandated deadline.

CVE Find offers a free alert system: create an account, then configure alerts by keyword, by vendor/product (CPE), by CWE category, by CVSS score or based on the CISA KEV list. Notifications are sent by email as soon as a new CVE matches your criteria.