CVE Find - Vulnerabilities Database

CVE Find is a real-time vulnerability database indexing 372 515 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 2092 new CVEs were published in the last 7 days.

Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).

CVE Find
With CVE Find, explore the world's largest database of vulnerabilities.

372 515 vulnerabilities

Last update : 2026-08-02 19h43 +00:00
Common Vulnerabilities and Exposures (CVE), is a list of publicly disclosed computer security flaws.
View CVE 2025
0
Created 7 days ago
0
Updated 7 days ago
0
Created 30 days ago
0
Updated 30 days ago

Free CVE Email Notifications

Get free real-time alerts on new vulnerabilities with CVE Find.
Stay protected and informed instantly !

The last 10 High CVE

Total 372 515 CVE in Datadase
CVE ID Published Description Score Severity

CVE-2026-65321

2026-08-02
14h56 +00:00
PyAthena prior to 3.35.4 contains a sql injection vulnerability that allows unauthenticated attacker...
SQL Injection
9.3
Critical

CVE-2026-68579

2026-08-02
13h16 +00:00
FreeRDP before 3.30.0 (<= 3.29.0) contains a heap-based buffer overflow in the Windows clipboard cli...
Overflow
9.6
Critical

CVE-2026-67356

2026-08-02
13h16 +00:00
ArcadeDB before 26.7.3 binds the real LocalDatabase object into JavaScript trigger contexts with Hos...
Improper Privilege Management
8.8
High

CVE-2025-71399

2026-08-02
13h16 +00:00
Better Auth relies on better-call, which uses the rou3 router library. In affected versions of rou3,...
8.6
High

CVE-2026-8457

2026-08-02
00h16 +00:00
The WooCommerce - Social Login plugin for WordPress is vulnerable to Authentication Bypass in all ve...
9.8
Critical

CVE-2026-55735

2026-08-01
18h46 +00:00
Improper Verification of Cryptographic Signature in ueberauth guardian allows an unauthenticated att...
8.2
High

CVE-2026-67343

2026-08-01
13h17 +00:00
ArcadeDB versions before 26.7.2 fail to properly redact the cluster token in the GET /api/v1/server ...
8.8
High

CVE-2026-67342

2026-08-01
13h17 +00:00
ArcadeDB versions before 26.7.2 contain an authorization bypass vulnerability in HTTP handlers for t...
Authorization problems
9.8
Critical

CVE-2026-67341

2026-08-01
13h17 +00:00
ArcadeDB versions before 26.7.2 fail to enforce scripting authorization checks on the SQL DEFINE FUN...
Authorization problems
9.8
Critical

CVE-2026-67340

2026-08-01
13h17 +00:00
ArcadeDB before 26.7.2 (arcadedb-engine) allows trigger scripts to look up host classes in java.lang...
Code Injection
9.8
Critical

Distribution by CVSS scores


CVE created per quarter since 1999

Frequently asked questions about CVE Find

CVE Find is a cybersecurity vulnerability search engine that aggregates and indexes CVE (Common Vulnerabilities and Exposures), CWE, CAPEC and CPE data from MITRE, NVD and CISA. It allows you to search, filter and monitor security flaws via configurable real-time alerts.

A CVE (Common Vulnerability and Exposure) is a unique identifier assigned to a publicly disclosed computer security flaw. Each CVE is managed by MITRE Corporation and referenced in the NIST National Vulnerability Database (NVD) with a CVSS score evaluating its severity from 0 to 10.

CVSS (Common Vulnerability Scoring System) is an international standard that evaluates the severity of a vulnerability on a scale of 0 to 10. A score of 9 to 10 is rated Critical, 7 to 8.9 High, 4 to 6.9 Medium, and 0.1 to 3.9 Low.

CISA KEV (Known Exploited Vulnerabilities) is a catalog maintained by the US Cybersecurity Agency (CISA) listing CVE vulnerabilities actively exploited in real cyberattacks. US federal organizations are required to remediate them within a mandated deadline.

CVE Find offers a free alert system: create an account, then configure alerts by keyword, by vendor/product (CPE), by CWE category, by CVSS score or based on the CISA KEV list. Notifications are sent by email as soon as a new CVE matches your criteria.