CISA Known Exploited Vulnerabilities

Dataset · US Cybersecurity and Infrastructure Security Agency · source URL ↗

Cybersecurity and Infrastructure Security Agency catalog of CVEs being actively exploited in the wild. ~1.6k entries. Includes ransomware-linked flag.

Source organization
US Cybersecurity and Infrastructure Security Agency
License / terms
Coverage
1,592 CVEs
Latest local indexed-row date
2026-10-02
API endpoint

Keywords

CISAKEVCVEvulnerabilityransomwarecybersecurity

Provenance

The listed URL identifies a referenced source; it does not by itself document the ingestion endpoint. Referenced source URL: https://www.cisa.gov/known-exploited-vulnerabilities-catalog. Source-specific terms apply. US federal employee-authored works are generally public domain under 17 USC 105; non-federal and third-party material retains source terms. Free or keyless access does not alter source terms. Metadata and normalization authored by MORVS (AI Analytics LLC) are CC0 only where expressly stated.

For agents