/cisa/vulnerabilities/search

POST /api/cisa/vulnerabilities/search

Price: 20 credits

Search the CISA Known Exploited Vulnerabilities catalog by vendor, product, weakness and dates

How to use it

Use this to answer 'which known-exploited vulnerabilities affect X' and 'what is overdue for remediation', not to look up one CVE. Every filter matches the catalog entry's own wording, so pass the vendor as CISA writes it ('Microsoft', 'Apache') rather than a legal name, and use query for anything you would otherwise guess at. An empty list means nothing in the catalog matches, not that the products are unaffected by anything.

Parameters

Request body

Response

Errors

Response headers