Skip to content

Data collected

CVEs Live

CVEs Live

Terms of Use

Last updated:

By using CVEs Live (cves.live) you agree to these terms. If you do not agree, please do not use the site.

1. The service

CVEs Live provides free tools with no sign-up. We may change, suspend or discontinue features at any time.

2. Informational purpose

Results are estimates based on the rules and data shown on each page, with their source and date. They are not professional (legal, tax, medical or financial) advice. Verify important figures before acting on them.

3. No warranty

The site is provided “as is”, without warranties of accuracy or availability. To the extent permitted by law, CVEs Live is not liable for losses arising from its use.

4. Acceptable use

Do not use the site for unlawful purposes, attempt to compromise its security, or overload it with automated traffic.

5. Intellectual property

Text, brand and code belong to CVEs Live. You may quote excerpts with a link to the source page.

6. Privacy

Data handling is described in the Privacy Policy. You can review your consent in .

7. Contact

Questions: the contact channel listed on this site.

8. Site-specific conditions

This site republishes public data: the CISA Known Exploited Vulnerabilities catalog (CISA), EPSS scores (FIRST.org), CVE Records (CVE Program) and CVSS assessments listed by the NVD. Scores and severity labels are shown as published by the source named beside them and are never recalculated here.

This product uses the NVD API but is not endorsed or certified by the NVD.

Every page states when its data was collected. A page may be older than the sources: before acting, confirm on the primary source linked in each entry and on the advisory of the vendor.

Absence from a list is not evidence of safety: the KEV catalog only contains vulnerabilities for which CISA has evidence of exploitation, and EPSS is a statistical estimate.