---
type: "firecrawl-provider"
description: "CVE vulnerability records from the NIST National Vulnerability Database CVE API 2.0 (services.nvd.nist.gov): look up a CVE by id, search by keyword, CPE product, CWE weakness, CVSS severity, CISA KEV membership and publication or modification dates, and list CVEs published or changed in the last days. Each record carries CVSS v4.0/v3.x/v2 scores, CWEs, CPE applicability matches, the CISA Known Exploited Vulnerabilities flag and dates, and references. Every result carries NVD's required notice."
use_when: "CVE vulnerability records from the NIST National Vulnerability Database CVE API 2.0 (services.nvd.nist.gov): look up a CVE by id, search by keyword, CPE product, CWE weakness, CVSS severity, CISA KEV membership and publication or modification dates, and list CVEs published or changed in the last days. Each record carries CVSS v4.0/v3.x/v2 scores, CWEs, CPE applicability matches, the CISA Known Exploited Vulnerabilities flag and dates, and references. Every result carries NVD's required notice."
categories: "Developer"
capabilities: 3
credits_per_call: 5
---
# NIST National Vulnerability Database (NVD) on Firecrawl Alexandria

CVE vulnerability records from the NIST National Vulnerability Database CVE API 2.0 (services.nvd.nist.gov): look up a CVE by id, search by keyword, CPE product, CWE weakness, CVSS severity, CISA KEV membership and publication or modification dates, and list CVEs published or changed in the last days. Each record carries CVSS v4.0/v3.x/v2 scores, CWEs, CPE applicability matches, the CISA Known Exploited Vulnerabilities flag and dates, and references. Every result carries NVD's required notice.

- Categories: Developer
- Category index: [Developer category](https://firecrawl.dev/alexandria/agents/categories/developer)
- Provider key: `nvd-nist-gov`
- Access: Firecrawl credits
- Cost: 5 credits per call

## More

- [Human guide](https://firecrawl.dev/app/alexandria/nvd-nist-gov)
- [OpenAPI spec](https://firecrawl.dev/alexandria/agents/providers/nvd-nist-gov/openapi.json)

## Capabilities

- [Cve](https://firecrawl.dev/alexandria/agents/providers/nvd-nist-gov/vulnerabilities/cve): One CVE record from NIST's National Vulnerability Database by CVE id or NVD detail-page URL: English description, NVD status, publication and modification dates, every CVSS v4.0/v3.1/v3.0/v2 metric with a headline score, CWE weaknesses, all CPE applicability matches with version ranges, the CISA Known Exploited Vulnerabilities (KEV) flag with date added, due date and required action, and all references with tags. Carries NVD's required notice.
- [Recent](https://firecrawl.dev/alexandria/agents/providers/nvd-nist-gov/vulnerabilities/recent): List NIST NVD CVE records published, or modified (new analysis, scores, CPEs, KEV entries, references), in the last 1 to 120 days, optionally only CISA KEV entries or one CVSS v3 severity. Returns one page (up to 50) with CVSS scores, CWEs, the first 25 CPE matches, the KEV flag and the reference count, ordered by publication (oldest first), with the total and a cursor that keeps the same time window. Carries NVD's required notice.
- [Search](https://firecrawl.dev/alexandria/agents/providers/nvd-nist-gov/vulnerabilities/search): Search NIST NVD CVE records by keyword, exact CPE name (optionally only where it is vulnerable), CPE prefix match (vendor, product, version), CWE id, CVSS v3 or v4 severity, CISA Known Exploited Vulnerabilities membership, and publication or last-modified date ranges (up to 120 days each). Returns one page (up to 50) of CVE records with CVSS scores, CWEs, the first 25 CPE matches, the KEV flag and dates, and the reference count, oldest publication first, with the total and a cursor. Rejected CVEs are excluded unless asked for. Carries NVD's required notice.

## 1. Choose this provider when

CVE vulnerability records from the NIST National Vulnerability Database CVE API 2.0 (services.nvd.nist.gov): look up a CVE by id, search by keyword, CPE product, CWE weakness, CVSS severity, CISA KEV membership and publication or modification dates, and list CVEs published or changed in the last days. Each record carries CVSS v4.0/v3.x/v2 scores, CWEs, CPE applicability matches, the CISA Known Exploited Vulnerabilities flag and dates, and references. Every result carries NVD's required notice.

## 2. Minimal request

Call `POST https://api.firecrawl.dev/v2/scrape` with `{ alexandria: { provider, capability, options } }`. For a batch, send `{ alexandria: [...] }` with up to 10 calls.

```json
{
  "provider": "nvd-nist-gov",
  "capability": "vulnerabilities/cve",
  "options": {
    "cve_id": "CVE-2025-0282"
  }
}
```

## 3. Add provider options

Use only the options needed for the task:

- `api_key` (string): Optional NVD API key (raises NVD's limit from 5 to 50 requests per 30 seconds). Sent only in the apiKey header; never placed in URLs or output. Pattern: ^[A-Za-z0-9-]{16,64}$. Example: `<api_key>`
- `cve_id` (string): CVE id, e.g. CVE-2021-44228 (case-insensitive). Give cve_id or url. Pattern: ^\s*[Cc][Vv][Ee]-[0-9]{4}-[0-9]{4,19}\s*$. Example: `<cve_id>`
- `url` (string): An https://nvd.nist.gov/vuln/detail/CVE-... URL. Mutually exclusive with cve_id. Pattern: ^https?://. Example: `<url>`

## 4. Request through your preferred interface

### JavaScript

```javascript
const result = await firecrawl.scrape({
  alexandria: {
    provider: "nvd-nist-gov",
    capability: "vulnerabilities/cve",
    options: {
      cve_id: "CVE-2025-0282",
    },
  },
});
```

### Python

```python
result = firecrawl.scrape_alexandria({
  "provider": "nvd-nist-gov",
  "capability": "vulnerabilities/cve",
  "options": {
    "cve_id": "CVE-2025-0282"
  }
})
```

### cURL

```sh
curl https://api.firecrawl.dev/v2/scrape \
  -H "Authorization: Bearer $FIRECRAWL_API_KEY" \
  -H "Content-Type: application/json" \
  -d '{
  "alexandria": {
    "provider": "nvd-nist-gov",
    "capability": "vulnerabilities/cve",
    "options": {
      "cve_id": "CVE-2025-0282"
    }
  }
}'
```

### CLI

```sh
firecrawl scrape 'nvd-nist-gov/vulnerabilities/cve' \
  --options '{"cve_id":"CVE-2025-0282"}'
```


### MCP

Call the FCX MCP retrieve tool with this object:

```json
{
  "provider": "nvd-nist-gov",
  "capability": "vulnerabilities/cve",
  "options": {
    "cve_id": "CVE-2025-0282"
  }
}
```

Ask for only the returned fields needed by the task.

## 5. Full request shape

```json
{
  "provider": "nvd-nist-gov",
  "capability": "vulnerabilities/cve",
  "options": {
    "cve_id": "CVE-2025-0282"
  }
}
```

## 6. Response data

The response includes `success`, `provider`, `capability`, `creditsCost` and `data`. This example shows the provider payload in `data`:

```json
{
  "cve": {
    "cpe_match_count": 11,
    "cpe_matches": [
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:connect_secure:22.7:r2:*:*:*:*:*:*",
        "match_criteria_id": "247E71F8-A03B-4097-B7BF-09F8BF3ED4D6",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:connect_secure:22.7:r2.1:*:*:*:*:*:*",
        "match_criteria_id": "E0059C69-4A18-4153-9D9A-5C1B03AD1453",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:connect_secure:22.7:r2.2:*:*:*:*:*:*",
        "match_criteria_id": "FC523C88-115E-4CD9-A8CB-AE6E6610F7D4",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:connect_secure:22.7:r2.3:*:*:*:*:*:*",
        "match_criteria_id": "3447428E-DBCD-4553-B51D-AC08ECAFD881",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:connect_secure:22.7:r2.4:*:*:*:*:*:*",
        "match_criteria_id": "A08BAF98-7F05-4596-8BFC-91F1A79D3BD1",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:neurons_for_zero-trust_access:22.7:r2:*:*:*:*:*:*",
        "match_criteria_id": "67D43D1D-564D-4ACD-B0FF-3828B95E9864",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:neurons_for_zero-trust_access:22.7:r2.2:*:*:*:*:*:*",
        "match_criteria_id": "BC8480E0-17C0-4590-950F-D3954E735365",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:neurons_for_zero-trust_access:22.7:r2.3:*:*:*:*:*:*",
        "match_criteria_id": "3FAF4FB0-A88C-4A87-B6CB-32EF7B415885",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:policy_secure:22.7:r1:*:*:*:*:*:*",
        "match_criteria_id": "FD9BE8C2-43EB-4870-A4B7-267CB17A19F1",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:policy_secure:22.7:r1.1:*:*:*:*:*:*",
        "match_criteria_id": "C8915BB2-C1C0-4189-A847-DDB2EF161D62",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:policy_secure:22.7:r1.2:*:*:*:*:*:*",
        "match_criteria_id": "8D24A8DB-D697-4C60-935D-B08EE36861CB",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      }
    ],
    "cpe_matches_truncated": false,
    "cve_id": "CVE-2025-0282",
    "cve_tags": [],
    "cvss": {
      "base_score": 9,
      "base_severity": "CRITICAL",
      "source": "nvd@nist.gov",
      "type": "Primary",
      "vector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",
      "version": "3.1"
    },
    "cvss_metrics": [
      {
        "base_score": 9,
        "base_severity": "CRITICAL",
        "exploitability_score": 2.2,
        "impact_score": 6,
        "source": "3c1d8aa1-5a33-4ea4-8992-aadd6440af75",
        "type": "Secondary",
        "vector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",
        "version": "3.1"
      },
      {
        "base_score": 9,
        "base_severity": "CRITICAL",
        "exploitability_score": 2.2,
        "impact_score": 6,
        "source": "nvd@nist.gov",
        "type": "Primary",
        "vector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",
        "version": "3.1"
      }
    ],
    "cwes": [
      {
        "cwe_id": "CWE-121",
        "source": "3c1d8aa1-5a33-4ea4-8992-aadd6440af75",
        "type": "Secondary"
      },
      {
        "cwe_id": "CWE-787",
        "source": "nvd@nist.gov",
        "type": "Primary"
      }
    ],
    "description": "A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for ZTA gateways before version 22.7R2.3 allows a remote unauthenticated attacker to achieve remote code execution.",
    "in_kev": true,
    "kev": {
      "action_due": "2025-01-15",
      "date_added": "2025-01-08",
      "required_action": "Apply mitigations as set forth in the CISA instructions linked below to include conducting hunt activities, taking remediation actions if applicable, and applying updates prior to returning a device to service.",
      "vulnerability_name": "Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability"
    },
    "last_modified": "2026-10-01T19:17:15.743",
    "nvd_url": "https://nvd.nist.gov/vuln/detail/CVE-2025-0282",
    "published": "2025-01-08T23:15:09.763",
    "reference_count": 7,
    "references": [
      {
        "source": "3c1d8aa1-5a33-4ea4-8992-aadd6440af75",
        "tags": [
          "Vendor Advisory"
        ],
        "url": "https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-Connect-Secure-Policy-Secure-ZTA-Gateways-CVE-2025-0282-CVE-2025-0283"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Exploit",
          "Technical Description"
        ],
        "url": "https://cloud.google.com/blog/topics/threat-intelligence/ivanti-connect-secure-vpn-zero-day"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "US Government Resource"
        ],
        "url": "https://www.cisa.gov/cisa-mitigation-instructions-cve-2025-0282"
      },
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "tags": [
          "Exploit"
        ],
        "url": "https://github.com/sfewer-r7/CVE-2025-0282"
      },
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "tags": [
          "Exploit",
          "Third Party Advisory"
        ],
        "url": "https://labs.watchtowr.com/exploitation-walkthrough-and-techniques-ivanti-connect-secure-rce-cve-2025-0282/"
      },
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "tags": [
          "US Government Resource"
        ],
        "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-0282"
      },
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "tags": [
          "US Government Resource"
        ],
        "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?search_api_fulltext=CVE-2025-0282"
      }
    ],
    "source_identifier": "3c1d8aa1-5a33-4ea4-8992-aadd6440af75",
    "status": "Analyzed"
  },
  "notice": "This product uses the NVD API but is not endorsed or certified by the NVD.",
  "nvd_timestamp": "2026-10-08T01:25:05.420",
  "observed_at_ms": 1791423210641,
  "source_url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2025-0282"
}
```

## API reference-derived contract

The following capability contract is generated from the same normalized Alexandria API reference exposed in the API spec.

### Cve

- Capability: `vulnerabilities/cve`
- Description: One CVE record from NIST's National Vulnerability Database by CVE id or NVD detail-page URL: English description, NVD status, publication and modification dates, every CVSS v4.0/v3.1/v3.0/v2 metric with a headline score, CWE weaknesses, all CPE applicability matches with version ranges, the CISA Known Exploited Vulnerabilities (KEV) flag with date added, due date and required action, and all references with tags. Carries NVD's required notice.
- Instructions: You have a CVE id (CVE-2021-44228) or an nvd.nist.gov/vuln/detail URL and need its severity, weakness, affected products, exploitation status or advisories.
- Cost: 5 credits per call
- Capability file: [Cve](https://firecrawl.dev/alexandria/agents/providers/nvd-nist-gov/vulnerabilities/cve)

Accepted options:
- `api_key` (string): Optional NVD API key (raises NVD's limit from 5 to 50 requests per 30 seconds). Sent only in the apiKey header; never placed in URLs or output. Pattern: ^[A-Za-z0-9-]{16,64}$. Example: `<api_key>`
- `cve_id` (string): CVE id, e.g. CVE-2021-44228 (case-insensitive). Give cve_id or url. Pattern: ^\s*[Cc][Vv][Ee]-[0-9]{4}-[0-9]{4,19}\s*$. Example: `<cve_id>`
- `url` (string): An https://nvd.nist.gov/vuln/detail/CVE-... URL. Mutually exclusive with cve_id. Pattern: ^https?://. Example: `<url>`

Response schema example:
```json
{
  "cve": {
    "cpe_match_count": 11,
    "cpe_matches": [
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:connect_secure:22.7:r2:*:*:*:*:*:*",
        "match_criteria_id": "247E71F8-A03B-4097-B7BF-09F8BF3ED4D6",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:connect_secure:22.7:r2.1:*:*:*:*:*:*",
        "match_criteria_id": "E0059C69-4A18-4153-9D9A-5C1B03AD1453",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:connect_secure:22.7:r2.2:*:*:*:*:*:*",
        "match_criteria_id": "FC523C88-115E-4CD9-A8CB-AE6E6610F7D4",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:connect_secure:22.7:r2.3:*:*:*:*:*:*",
        "match_criteria_id": "3447428E-DBCD-4553-B51D-AC08ECAFD881",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:connect_secure:22.7:r2.4:*:*:*:*:*:*",
        "match_criteria_id": "A08BAF98-7F05-4596-8BFC-91F1A79D3BD1",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:neurons_for_zero-trust_access:22.7:r2:*:*:*:*:*:*",
        "match_criteria_id": "67D43D1D-564D-4ACD-B0FF-3828B95E9864",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:neurons_for_zero-trust_access:22.7:r2.2:*:*:*:*:*:*",
        "match_criteria_id": "BC8480E0-17C0-4590-950F-D3954E735365",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:neurons_for_zero-trust_access:22.7:r2.3:*:*:*:*:*:*",
        "match_criteria_id": "3FAF4FB0-A88C-4A87-B6CB-32EF7B415885",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:policy_secure:22.7:r1:*:*:*:*:*:*",
        "match_criteria_id": "FD9BE8C2-43EB-4870-A4B7-267CB17A19F1",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:policy_secure:22.7:r1.1:*:*:*:*:*:*",
        "match_criteria_id": "C8915BB2-C1C0-4189-A847-DDB2EF161D62",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      },
      {
        "configuration": 0,
        "configuration_operator": null,
        "criteria": "cpe:2.3:a:ivanti:policy_secure:22.7:r1.2:*:*:*:*:*:*",
        "match_criteria_id": "8D24A8DB-D697-4C60-935D-B08EE36861CB",
        "node_negate": false,
        "node_operator": "OR",
        "version_end_excluding": null,
        "version_end_including": null,
        "version_start_excluding": null,
        "version_start_including": null,
        "vulnerable": true
      }
    ],
    "cpe_matches_truncated": false,
    "cve_id": "CVE-2025-0282",
    "cve_tags": [],
    "cvss": {
      "base_score": 9,
      "base_severity": "CRITICAL",
      "source": "nvd@nist.gov",
      "type": "Primary",
      "vector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",
      "version": "3.1"
    },
    "cvss_metrics": [
      {
        "base_score": 9,
        "base_severity": "CRITICAL",
        "exploitability_score": 2.2,
        "impact_score": 6,
        "source": "3c1d8aa1-5a33-4ea4-8992-aadd6440af75",
        "type": "Secondary",
        "vector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",
        "version": "3.1"
      },
      {
        "base_score": 9,
        "base_severity": "CRITICAL",
        "exploitability_score": 2.2,
        "impact_score": 6,
        "source": "nvd@nist.gov",
        "type": "Primary",
        "vector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",
        "version": "3.1"
      }
    ],
    "cwes": [
      {
        "cwe_id": "CWE-121",
        "source": "3c1d8aa1-5a33-4ea4-8992-aadd6440af75",
        "type": "Secondary"
      },
      {
        "cwe_id": "CWE-787",
        "source": "nvd@nist.gov",
        "type": "Primary"
      }
    ],
    "description": "A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for ZTA gateways before version 22.7R2.3 allows a remote unauthenticated attacker to achieve remote code execution.",
    "in_kev": true,
    "kev": {
      "action_due": "2025-01-15",
      "date_added": "2025-01-08",
      "required_action": "Apply mitigations as set forth in the CISA instructions linked below to include conducting hunt activities, taking remediation actions if applicable, and applying updates prior to returning a device to service.",
      "vulnerability_name": "Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability"
    },
    "last_modified": "2026-10-01T19:17:15.743",
    "nvd_url": "https://nvd.nist.gov/vuln/detail/CVE-2025-0282",
    "published": "2025-01-08T23:15:09.763",
    "reference_count": 7,
    "references": [
      {
        "source": "3c1d8aa1-5a33-4ea4-8992-aadd6440af75",
        "tags": [
          "Vendor Advisory"
        ],
        "url": "https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-Connect-Secure-Policy-Secure-ZTA-Gateways-CVE-2025-0282-CVE-2025-0283"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Exploit",
          "Technical Description"
        ],
        "url": "https://cloud.google.com/blog/topics/threat-intelligence/ivanti-connect-secure-vpn-zero-day"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "US Government Resource"
        ],
        "url": "https://www.cisa.gov/cisa-mitigation-instructions-cve-2025-0282"
      },
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "tags": [
          "Exploit"
        ],
        "url": "https://github.com/sfewer-r7/CVE-2025-0282"
      },
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "tags": [
          "Exploit",
          "Third Party Advisory"
        ],
        "url": "https://labs.watchtowr.com/exploitation-walkthrough-and-techniques-ivanti-connect-secure-rce-cve-2025-0282/"
      },
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "tags": [
          "US Government Resource"
        ],
        "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-0282"
      },
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "tags": [
          "US Government Resource"
        ],
        "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?search_api_fulltext=CVE-2025-0282"
      }
    ],
    "source_identifier": "3c1d8aa1-5a33-4ea4-8992-aadd6440af75",
    "status": "Analyzed"
  },
  "notice": "This product uses the NVD API but is not endorsed or certified by the NVD.",
  "nvd_timestamp": "2026-10-08T01:25:05.420",
  "observed_at_ms": 1791423210641,
  "source_url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2025-0282"
}
```

### Recent

- Capability: `vulnerabilities/recent`
- Description: List NIST NVD CVE records published, or modified (new analysis, scores, CPEs, KEV entries, references), in the last 1 to 120 days, optionally only CISA KEV entries or one CVSS v3 severity. Returns one page (up to 50) with CVSS scores, CWEs, the first 25 CPE matches, the KEV flag and the reference count, ordered by publication (oldest first), with the total and a cursor that keeps the same time window. Carries NVD's required notice.
- Instructions: Monitoring: what NVD published or changed recently, e.g. critical CVEs modified in the last day. Use `search` for fixed date ranges combined with product or weakness filters.
- Cost: 5 credits per call
- Capability file: [Recent](https://firecrawl.dev/alexandria/agents/providers/nvd-nist-gov/vulnerabilities/recent)

Accepted options:
- `api_key` (string): Optional NVD API key (raises NVD's limit from 5 to 50 requests per 30 seconds). Sent only in the apiKey header; never placed in URLs or output. Pattern: ^[A-Za-z0-9-]{16,64}$. Example: `<api_key>`
- `change` (string): modified lists CVEs whose NVD record changed in the window; published lists newly published CVEs. Example: `modified`
- `cursor` (string): next_cursor from the previous page; pass the same change and filters. Pattern: ^[0-9]{1,8}\.[0-9]{1,15}\.[0-9]{1,15}$. Example: `<cursor>`
- `cvss_v3_severity` (string): Only CVEs with this CVSS v3 base severity. Example: `LOW`
- `days` (number): Window length in days, ending now. Example: `1`
- `in_kev` (boolean): Only CVEs in CISA's Known Exploited Vulnerabilities catalog. Example: `false`
- `include_rejected` (boolean): Include CVEs NVD lists as Rejected. Example: `false`
- `page_size` (number): Records per page. Example: `10`

Response schema example:
```json
{
  "count": 3,
  "next_cursor": "3.1791336455000.1791422855000",
  "notice": "This product uses the NVD API but is not endorsed or certified by the NVD.",
  "nvd_timestamp": "2026-10-08T01:27:35.733",
  "observed_at_ms": 1791423210658,
  "results": [
    {
      "cpe_match_count": 6,
      "cpe_matches": [
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:commons_fileupload:1.0:*:*:*:*:*:*:*",
          "match_criteria_id": "F15B6651-DC03-4403-BA24-847509A818C5",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:commons_fileupload:1.1:*:*:*:*:*:*:*",
          "match_criteria_id": "A7E0CBD8-A3CA-46D2-92ED-FBD3E0B34984",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:commons_fileupload:1.1.1:*:*:*:*:*:*:*",
          "match_criteria_id": "5EAAFFAF-4570-4520-A204-03CA6B25CEA2",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:commons_fileupload:1.2:*:*:*:*:*:*:*",
          "match_criteria_id": "9419F6EC-7A3D-483E-8331-8BAC8546F294",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:commons_fileupload:1.2.1:*:*:*:*:*:*:*",
          "match_criteria_id": "17C5F883-306F-4CEE-A56F-5B697962AB2D",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:commons_fileupload:1.2.2:*:*:*:*:*:*:*",
          "match_criteria_id": "6318E461-47A6-40F5-ACB6-A5B7DD19CCA0",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        }
      ],
      "cpe_matches_truncated": false,
      "cve_id": "CVE-2013-0248",
      "cve_tags": [],
      "cvss": {
        "base_score": 6.8,
        "base_severity": "MEDIUM",
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "type": "Secondary",
        "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:L",
        "version": "3.1"
      },
      "cvss_metrics": [
        {
          "base_score": 6.8,
          "base_severity": "MEDIUM",
          "exploitability_score": 2.5,
          "impact_score": 4.2,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary",
          "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:L",
          "version": "3.1"
        },
        {
          "base_score": 3.3,
          "base_severity": "LOW",
          "exploitability_score": 3.4,
          "impact_score": 4.9,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "vector": "AV:L/AC:M/Au:N/C:N/I:P/A:P",
          "version": "2.0"
        }
      ],
      "cwes": [
        {
          "cwe_id": "CWE-264",
          "source": "nvd@nist.gov",
          "type": "Primary"
        },
        {
          "cwe_id": "CWE-59",
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "description": "The default configuration of javax.servlet.context.tempdir in Apache Commons FileUpload 1.0 through 1.2.2 uses the /tmp directory for uploaded files, which allows local users to overwrite arbitrary files via an unspecified symlink attack.",
      "in_kev": false,
      "kev": null,
      "last_modified": "2026-10-07T19:17:08.970",
      "nvd_url": "https://nvd.nist.gov/vuln/detail/CVE-2013-0248",
      "published": "2013-03-15T20:55:10.553",
      "reference_count": 12,
      "source_identifier": "secalert@redhat.com",
      "status": "Modified"
    },
    {
      "cpe_match_count": 31,
      "cpe_matches": [
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_10_1507:-:*:*:*:*:*:*:*",
          "match_criteria_id": "542DAEEC-73CC-46C6-A630-BF474A3446AC",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_10_1607:-:*:*:*:*:*:x64:*",
          "match_criteria_id": "5E491E46-1917-41FE-8F9A-BB0BDDEB42C3",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_10_1607:-:*:*:*:*:*:x86:*",
          "match_criteria_id": "0A1BC97A-263E-4291-8AEF-02EE4E6031E9",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_10_1809:-:*:*:*:*:*:arm64:*",
          "match_criteria_id": "73D24713-D897-408D-893B-77A61982597D",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_10_1809:-:*:*:*:*:*:x64:*",
          "match_criteria_id": "306B7CE6-8239-4AED-9ED4-4C9F5B349F58",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_10_1809:-:*:*:*:*:*:x86:*",
          "match_criteria_id": "345FCD64-D37B-425B-B64C-8B1640B7E850",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:*:*",
          "match_criteria_id": "A1B570A8-ED1A-46B6-B8AB-064445F8FC4C",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_10_20h2:-:*:*:*:*:*:*:*",
          "match_criteria_id": "6AFD13A6-A390-4400-9029-2F4058CA17E2",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_10_21h1:-:*:*:*:*:*:*:*",
          "match_criteria_id": "B1FED4C9-B680-4F44-ADC0-AC43D6B5F184",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_10_21h2:-:*:*:*:*:*:*:*",
          "match_criteria_id": "2F513002-D8C1-4D3A-9F79-4B52498F67E9",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_10_22h2:-:*:*:*:*:*:arm64:*",
          "match_criteria_id": "A9D54EE6-30AF-411C-A285-A4DCB6C6EC06",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_11_21h2:-:*:*:*:*:*:arm64:*",
          "match_criteria_id": "F2D718BD-C4B7-48DB-BE78-B9CA22F27DD0",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_11_21h2:-:*:*:*:*:*:x64:*",
          "match_criteria_id": "0C3552E0-F793-4CDD-965D-457495475805",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_11_22h2:-:*:*:*:*:*:arm64:*",
          "match_criteria_id": "B2D24C54-F04F-4717-B614-FE67B3ED9DC0",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_11_22h2:-:*:*:*:*:*:x64:*",
          "match_criteria_id": "D5EC3F68-8F41-4F6B-B2E5-920322A4A321",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_11_23h2:-:*:*:*:*:*:arm64:*",
          "match_criteria_id": "B0301BA0-81DB-4FC1-9BC3-EB48A56BC608",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_11_23h2:-:*:*:*:*:*:x64:*",
          "match_criteria_id": "8E3C1327-F331-4448-A253-00EAC7428317",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_11_24h2:-:*:*:*:*:*:arm64:*",
          "match_criteria_id": "08EE1F3A-A8DE-4867-BB5B-8A8ED867F3CA",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_11_24h2:-:*:*:*:*:*:x64:*",
          "match_criteria_id": "B1670829-6A8C-4688-B7A5-3DFB878A4861",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:*:*",
          "match_criteria_id": "C2B1C231-DE19-4B8F-A4AA-5B3A65276E46",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_8.1:-:*:*:*:*:*:*:*",
          "match_criteria_id": "E93068DB-549B-45AB-8E5C-00EB5D8B5CF8",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_rt_8.1:-:*:*:*:*:*:*:*",
          "match_criteria_id": "C6CE5198-C498-4672-AF4C-77AB4BE06C5C",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:*:*",
          "match_criteria_id": "5F422A8C-2C4E-42C8-B420-E0728037E15C",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*",
          "match_criteria_id": "AF07A81D-12E5-4B1D-BFF9-C8D08C32FF4F",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:*",
          "match_criteria_id": "A7DF96F8-BA6A-4780-9CA3-F719B3F81074",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        }
      ],
      "cpe_matches_truncated": true,
      "cve_id": "CVE-2013-3900",
      "cve_tags": [],
      "cvss": {
        "base_score": 5.5,
        "base_severity": "MEDIUM",
        "source": "secure@microsoft.com",
        "type": "Primary",
        "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N",
        "version": "3.1"
      },
      "cvss_metrics": [
        {
          "base_score": 5.5,
          "base_severity": "MEDIUM",
          "exploitability_score": 1.8,
          "impact_score": 3.6,
          "source": "secure@microsoft.com",
          "type": "Primary",
          "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N",
          "version": "3.1"
        },
        {
          "base_score": 8.8,
          "base_severity": "HIGH",
          "exploitability_score": 2.8,
          "impact_score": 5.9,
          "source": "nvd@nist.gov",
          "type": "Secondary",
          "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
          "version": "3.1"
        },
        {
          "base_score": 7.6,
          "base_severity": "HIGH",
          "exploitability_score": 4.9,
          "impact_score": 10,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "vector": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
          "version": "2.0"
        }
      ],
      "cwes": [
        {
          "cwe_id": "CWE-347",
          "source": "secure@microsoft.com",
          "type": "Primary"
        },
        {
          "cwe_id": "CWE-347",
          "source": "nvd@nist.gov",
          "type": "Secondary"
        }
      ],
      "description": "Why is Microsoft republishing a CVE from 2013?\nWe are republishing CVE-2013-3900 in the Security Update Guide to update the Security Updates table and to inform customers that the EnableCertPaddingCheck is available in all currently supported versions of Windows 10 and Windows 11. While the format is different from the original CVE published in 2013, except for clarifications about how to configure the EnableCertPaddingCheck registry value, the information herein remains unchanged from the original text published on December 10, 2013,\nMicrosoft does not plan to enforce the stricter verification behavior as a default functionality on supported releases of Microsoft Windows. This behavior remains available as an opt-in feature via reg key setting, and is available on supported editions of Windows released since December 10, 2013. This includes all currently supported versions of Windows 10 and Windows 11. The supporting code for this reg key was incorporated at the time of release for Windows 10 and Windows 11, so no security update is required; however, the reg key must be set. See the Security Updates table for the list of affected software.\nVulnerability Description\nA remote code execution vulnerability exists in the way that the WinVerifyTrust function handles Windows Authenticode signature verification for portable executable (PE) files. An anonymous attacker could exploit the vulnerability by modifying an existing signed executable file to leverage unverified portions of the file in such a way as to add malicious code to the file without invalidating the signature. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.\nIf a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.\nExploitation of this vulnerability requires that a user or application run or install a specially crafted, signed PE file. An attacker could modify an... See more at https://msrc.microsoft.com/update-guide/vulnerability/CVE-2013-3900",
      "in_kev": true,
      "kev": {
        "action_due": "2022-07-10",
        "date_added": "2022-01-10",
        "required_action": "Apply updates per vendor instructions.",
        "vulnerability_name": "Microsoft WinVerifyTrust function Remote Code Execution"
      },
      "last_modified": "2026-10-07T17:58:36.270",
      "nvd_url": "https://nvd.nist.gov/vuln/detail/CVE-2013-3900",
      "published": "2013-12-11T00:55:03.693",
      "reference_count": 5,
      "source_identifier": "secure@microsoft.com",
      "status": "Analyzed"
    },
    {
      "cpe_match_count": 74,
      "cpe_matches": [
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:retail_applications:12.0:*:*:*:*:*:*:*",
          "match_criteria_id": "2141D8D6-1899-49A2-85C7-4E1ACA411663",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:retail_applications:12.0in:*:*:*:*:*:*:*",
          "match_criteria_id": "98176890-C14E-4E0F-878D-8B7CDDF36389",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:retail_applications:13.0:*:*:*:*:*:*:*",
          "match_criteria_id": "B31C4B61-0A82-4ADC-8DE3-E291B06694AA",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:retail_applications:13.1:*:*:*:*:*:*:*",
          "match_criteria_id": "0DDCBCD1-583C-4039-AFA3-0136F9E8F46D",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:retail_applications:13.2:*:*:*:*:*:*:*",
          "match_criteria_id": "C5D95173-F331-4886-A312-2122B74A28FA",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:retail_applications:13.3:*:*:*:*:*:*:*",
          "match_criteria_id": "A6953917-DD9F-40DE-A9B2-0D3464F7864B",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:retail_applications:13.4:*:*:*:*:*:*:*",
          "match_criteria_id": "88BDD825-2CC8-4164-A895-5AC00F122F4F",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:retail_applications:14.0:*:*:*:*:*:*:*",
          "match_criteria_id": "7D1D695F-15EF-4CDE-98C4-91E9D3D5188A",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:commons_fileupload:*:*:*:*:*:*:*:*",
          "match_criteria_id": "BD5CFCD3-1E1E-4A9E-B0D8-1DA505BC426A",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": "1.3",
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:commons_fileupload:1.0:*:*:*:*:*:*:*",
          "match_criteria_id": "F15B6651-DC03-4403-BA24-847509A818C5",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:commons_fileupload:1.1:*:*:*:*:*:*:*",
          "match_criteria_id": "A7E0CBD8-A3CA-46D2-92ED-FBD3E0B34984",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:commons_fileupload:1.1.1:*:*:*:*:*:*:*",
          "match_criteria_id": "5EAAFFAF-4570-4520-A204-03CA6B25CEA2",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:commons_fileupload:1.2:*:*:*:*:*:*:*",
          "match_criteria_id": "9419F6EC-7A3D-483E-8331-8BAC8546F294",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:commons_fileupload:1.2.1:*:*:*:*:*:*:*",
          "match_criteria_id": "17C5F883-306F-4CEE-A56F-5B697962AB2D",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:commons_fileupload:1.2.2:*:*:*:*:*:*:*",
          "match_criteria_id": "6318E461-47A6-40F5-ACB6-A5B7DD19CCA0",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:tomcat:7.0.0:*:*:*:*:*:*:*",
          "match_criteria_id": "0F8C62EF-1B67-456A-9C66-755439CF8556",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:tomcat:7.0.0:beta:*:*:*:*:*:*",
          "match_criteria_id": "33E9607B-4D28-460D-896B-E4B7FA22441E",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:tomcat:7.0.1:*:*:*:*:*:*:*",
          "match_criteria_id": "A819E245-D641-4F19-9139-6C940504F6E7",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:tomcat:7.0.2:*:*:*:*:*:*:*",
          "match_criteria_id": "8C381275-10C5-4939-BCE3-0D1F3B3CB2EE",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:tomcat:7.0.2:beta:*:*:*:*:*:*",
          "match_criteria_id": "81A31CA0-A209-4C49-AA06-C38E165E5B68",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:tomcat:7.0.3:*:*:*:*:*:*:*",
          "match_criteria_id": "7205475A-6D04-4042-B24E-1DA5A57029B7",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:tomcat:7.0.4:*:*:*:*:*:*:*",
          "match_criteria_id": "08022987-B36B-4F63-88A5-A8F59195DF4A",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:tomcat:7.0.4:beta:*:*:*:*:*:*",
          "match_criteria_id": "0AA563BF-A67A-477D-956A-167ABEF885C5",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:tomcat:7.0.5:*:*:*:*:*:*:*",
          "match_criteria_id": "FF4B7557-EF35-451E-B55D-3296966695AC",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:tomcat:7.0.6:*:*:*:*:*:*:*",
          "match_criteria_id": "8980E61E-27BE-4858-82B3-C0E8128AF521",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        }
      ],
      "cpe_matches_truncated": true,
      "cve_id": "CVE-2014-0050",
      "cve_tags": [],
      "cvss": {
        "base_score": 7.5,
        "base_severity": "HIGH",
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "type": "Secondary",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
        "version": "3.1"
      },
      "cvss_metrics": [
        {
          "base_score": 7.5,
          "base_severity": "HIGH",
          "exploitability_score": 3.9,
          "impact_score": 3.6,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary",
          "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
          "version": "3.1"
        },
        {
          "base_score": 7.5,
          "base_severity": "HIGH",
          "exploitability_score": 10,
          "impact_score": 6.4,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "vector": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "version": "2.0"
        }
      ],
      "cwes": [
        {
          "cwe_id": "CWE-264",
          "source": "nvd@nist.gov",
          "type": "Primary"
        },
        {
          "cwe_id": "CWE-835",
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "description": "MultipartStream.java in Apache Commons FileUpload before 1.3.1, as used in Apache Tomcat, JBoss Web, and other products, allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted Content-Type header that bypasses a loop's intended exit conditions.",
      "in_kev": false,
      "kev": null,
      "last_modified": "2026-10-07T18:17:05.247",
      "nvd_url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0050",
      "published": "2014-04-01T06:27:51.373",
      "reference_count": 138,
      "source_identifier": "secalert@redhat.com",
      "status": "Modified"
    }
  ],
  "source_url": "https://services.nvd.nist.gov/rest/json/cves/2.0?lastModStartDate=2026-10-07T01%3A27%3A35.000Z&lastModEndDate=2026-10-08T01%3A27%3A35.000Z&noRejected&resultsPerPage=3&startIndex=0",
  "start_index": 0,
  "total_results": 3778,
  "window": {
    "change": "modified",
    "from": "2026-10-07T01:27:35.000Z",
    "to": "2026-10-08T01:27:35.000Z"
  }
}
```

### Search

- Capability: `vulnerabilities/search`
- Description: Search NIST NVD CVE records by keyword, exact CPE name (optionally only where it is vulnerable), CPE prefix match (vendor, product, version), CWE id, CVSS v3 or v4 severity, CISA Known Exploited Vulnerabilities membership, and publication or last-modified date ranges (up to 120 days each). Returns one page (up to 50) of CVE records with CVSS scores, CWEs, the first 25 CPE matches, the KEV flag and dates, and the reference count, oldest publication first, with the total and a cursor. Rejected CVEs are excluded unless asked for. Carries NVD's required notice.
- Instructions: Find CVEs affecting a product or version (cpe_match cpe:2.3:a:apache:log4j:2.14.1), with a weakness (CWE-79), that are actively exploited (in_kev), or matching words. Use `cve` for a known id and its full CPE list and references.
- Cost: 5 credits per call
- Capability file: [Search](https://firecrawl.dev/alexandria/agents/providers/nvd-nist-gov/vulnerabilities/search)

Accepted options:
- `api_key` (string): Optional NVD API key (raises NVD's limit from 5 to 50 requests per 30 seconds). Sent only in the apiKey header; never placed in URLs or output. Pattern: ^[A-Za-z0-9-]{16,64}$. Example: `<api_key>`
- `cpe_match` (string): CPE 2.3 prefix matched against applicability statements, including version ranges: cpe:2.3:a:apache:log4j (all versions) or cpe:2.3:a:apache:log4j:2.14.1 (that version). Example: `<cpe_match>`
- `cpe_name` (string): One full CPE 2.3 name from NVD's CPE dictionary, e.g. cpe:2.3:o:microsoft:windows_10:1607:*:*:*:*:*:*:*. Mutually exclusive with cpe_match. Example: `<cpe_name>`
- `cursor` (string): next_cursor from the previous page. Pattern: ^[0-9]{1,8}$. Example: `<cursor>`
- `cvss_v3_severity` (string): Only CVEs with this CVSS v3 base severity. Example: `LOW`
- `cvss_v4_severity` (string): Only CVEs with this CVSS v4 base severity. Example: `LOW`
- `cwe_id` (string): CWE id, e.g. CWE-79, CWE-917, NVD-CWE-noinfo. Pattern: ^\s*([Cc][Ww][Ee]-[0-9]{1,6}|[Nn][Vv][Dd]-[Cc][Ww][Ee]-([Oo][Tt][Hh][Ee][Rr]|[Nn][Oo][Ii][Nn][Ff][Oo]))\s*$. Example: `<cwe_id>`
- `in_kev` (boolean): Only CVEs in CISA's Known Exploited Vulnerabilities catalog. Example: `false`
- `include_rejected` (boolean): Include CVEs NVD lists as Rejected. Example: `false`
- `is_vulnerable` (boolean): With cpe_name, only CVEs where that CPE is itself vulnerable (not just a platform). Example: `false`
- `keyword` (string): Words that must all appear in the CVE description (NVD keywordSearch). Example: `<keyword>`
- `keyword_exact_match` (boolean): Match keyword as an exact phrase. Needs keyword. Example: `false`
- `modified_from` (string): First last-modified day, YYYY-MM-DD (UTC). Needs modified_to; at most 120 days. Pattern: ^[0-9]{4}-[0-9]{2}-[0-9]{2}$. Example: `<modified_from>`
- `modified_to` (string): Last last-modified day, YYYY-MM-DD (UTC), inclusive. Pattern: ^[0-9]{4}-[0-9]{2}-[0-9]{2}$. Example: `<modified_to>`
- `page_size` (number): Records per page. Example: `10`
- `published_from` (string): First publication day, YYYY-MM-DD (UTC). Needs published_to; at most 120 days. Pattern: ^[0-9]{4}-[0-9]{2}-[0-9]{2}$. Example: `<published_from>`
- `published_to` (string): Last publication day, YYYY-MM-DD (UTC), inclusive. Pattern: ^[0-9]{4}-[0-9]{2}-[0-9]{2}$. Example: `<published_to>`

Response schema example:
```json
{
  "count": 3,
  "next_cursor": "3",
  "notice": "This product uses the NVD API but is not endorsed or certified by the NVD.",
  "nvd_timestamp": "2026-10-08T01:27:28.206",
  "observed_at_ms": 1791423210643,
  "results": [
    {
      "cpe_match_count": 6,
      "cpe_matches": [
        {
          "configuration": 0,
          "configuration_operator": "AND",
          "criteria": "cpe:2.3:a:redhat:jboss_enterprise_application_platform:4.3.0:*:*:*:*:*:*:*",
          "match_criteria_id": "E82B2AD8-967D-4ABE-982B-87B9DE73F8D6",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 0,
          "configuration_operator": "AND",
          "criteria": "cpe:2.3:o:redhat:enterprise_linux:4:*:*:*:*:*:*:*",
          "match_criteria_id": "CA2C244C-82F6-49BC-B7F7-54AB989C43E8",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": false
        },
        {
          "configuration": 0,
          "configuration_operator": "AND",
          "criteria": "cpe:2.3:o:redhat:enterprise_linux:5:*:*:*:*:*:*:*",
          "match_criteria_id": "AA9B3CC0-DF1C-4A86-B2A3-A9D428A5A6E6",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": false
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:netapp:oncommand_balance:-:*:*:*:*:*:*:*",
          "match_criteria_id": "7DCBCC5D-C396-47A8-ADF4-D3A2C4377FB1",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:netapp:oncommand_insight:-:*:*:*:*:*:*:*",
          "match_criteria_id": "F1BE6C1F-2565-4E97-92AA-16563E5660A5",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:netapp:oncommand_unified_manager:-:*:*:*:*:clustered_data_ontap:*:*",
          "match_criteria_id": "95B173E0-1475-4F8D-A982-86F36BE3DD4A",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        }
      ],
      "cpe_matches_truncated": false,
      "cve_id": "CVE-2010-1871",
      "cve_tags": [],
      "cvss": {
        "base_score": 8.8,
        "base_severity": "HIGH",
        "source": "nvd@nist.gov",
        "type": "Primary",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
        "version": "3.1"
      },
      "cvss_metrics": [
        {
          "base_score": 8.8,
          "base_severity": "HIGH",
          "exploitability_score": 2.8,
          "impact_score": 5.9,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
          "version": "3.1"
        },
        {
          "base_score": 8.8,
          "base_severity": "HIGH",
          "exploitability_score": 2.8,
          "impact_score": 5.9,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary",
          "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
          "version": "3.1"
        },
        {
          "base_score": 6.8,
          "base_severity": "MEDIUM",
          "exploitability_score": 8.6,
          "impact_score": 6.4,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "vector": "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "version": "2.0"
        }
      ],
      "cwes": [
        {
          "cwe_id": "CWE-917",
          "source": "nvd@nist.gov",
          "type": "Primary"
        },
        {
          "cwe_id": "CWE-917",
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "description": "JBoss Seam 2 (jboss-seam2), as used in JBoss Enterprise Application Platform 4.3.0 for Red Hat Linux, does not properly sanitize inputs for JBoss Expression Language (EL) expressions, which allows remote attackers to execute arbitrary code via a crafted URL.  NOTE: this is only a vulnerability when the Java Security Manager is not properly configured.",
      "in_kev": true,
      "kev": {
        "action_due": "2022-06-10",
        "date_added": "2021-12-10",
        "required_action": "Apply updates per vendor instructions.",
        "vulnerability_name": "Red Hat Linux JBoss Seam 2 Remote Code Execution Vulnerability"
      },
      "last_modified": "2026-06-16T23:19:29.840",
      "nvd_url": "https://nvd.nist.gov/vuln/detail/CVE-2010-1871",
      "published": "2010-08-05T13:23:09.477",
      "reference_count": 17,
      "source_identifier": "cve@mitre.org",
      "status": "Analyzed"
    },
    {
      "cpe_match_count": 1,
      "cpe_matches": [
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:sonatype:nexus:*:*:*:*:*:*:*:*",
          "match_criteria_id": "8B98DA8A-C0CE-4902-9DD1-3FBEC00215FC",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": "3.21.2",
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        }
      ],
      "cpe_matches_truncated": false,
      "cve_id": "CVE-2020-10199",
      "cve_tags": [],
      "cvss": {
        "base_score": 8.8,
        "base_severity": "HIGH",
        "source": "nvd@nist.gov",
        "type": "Primary",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
        "version": "3.1"
      },
      "cvss_metrics": [
        {
          "base_score": 8.8,
          "base_severity": "HIGH",
          "exploitability_score": 2.8,
          "impact_score": 5.9,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "vector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
          "version": "3.1"
        },
        {
          "base_score": 8.8,
          "base_severity": "HIGH",
          "exploitability_score": 2.8,
          "impact_score": 5.9,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary",
          "vector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
          "version": "3.1"
        },
        {
          "base_score": 9,
          "base_severity": "HIGH",
          "exploitability_score": 8,
          "impact_score": 10,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "vector": "AV:N/AC:L/Au:S/C:C/I:C/A:C",
          "version": "2.0"
        }
      ],
      "cwes": [
        {
          "cwe_id": "CWE-917",
          "source": "nvd@nist.gov",
          "type": "Primary"
        },
        {
          "cwe_id": "CWE-917",
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "description": "Sonatype Nexus Repository before 3.21.2 allows JavaEL Injection (issue 1 of 2).",
      "in_kev": true,
      "kev": {
        "action_due": "2022-05-03",
        "date_added": "2021-11-03",
        "required_action": "Apply updates per vendor instructions.",
        "vulnerability_name": "Sonatype Nexus Repository Remote Code Execution Vulnerability"
      },
      "last_modified": "2026-06-17T02:47:28.890",
      "nvd_url": "https://nvd.nist.gov/vuln/detail/CVE-2020-10199",
      "published": "2020-04-01T19:15:14.393",
      "reference_count": 9,
      "source_identifier": "cve@mitre.org",
      "status": "Analyzed"
    },
    {
      "cpe_match_count": 13,
      "cpe_matches": [
        {
          "configuration": 0,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:apache:struts:*:*:*:*:*:*:*:*",
          "match_criteria_id": "23D366CD-5A53-400A-B846-D4F287915BC5",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": "2.5.30",
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": "2.0.0",
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:business_intelligence:12.2.1.3.0:*:*:*:enterprise:*:*:*",
          "match_criteria_id": "77C3DD16-1D81-40E1-B312-50FBD275507C",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:business_intelligence:12.2.1.4.0:*:*:*:enterprise:*:*:*",
          "match_criteria_id": "81DAC8C0-D342-44B5-9432-6B88D389584F",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:communications_diameter_intelligence_hub:8.0.0:*:*:*:*:*:*:*",
          "match_criteria_id": "F2E30096-0B9A-4301-A34A-DAECE85FE1F4",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:communications_diameter_intelligence_hub:8.1.0:*:*:*:*:*:*:*",
          "match_criteria_id": "6B88D928-9735-4E5C-B8D3-597AB2A15854",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:communications_diameter_intelligence_hub:8.2.0:*:*:*:*:*:*:*",
          "match_criteria_id": "BE4A02B1-4E35-4054-9FEB-886985267199",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:communications_diameter_intelligence_hub:8.2.3:*:*:*:*:*:*:*",
          "match_criteria_id": "C3027474-CF8F-432D-9295-C56CD9A8B710",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:communications_policy_management:12.5.0:*:*:*:*:*:*:*",
          "match_criteria_id": "5312AC7A-3C16-4967-ACA6-317289A749D0",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:communications_pricing_design_center:12.0.0.3.0:*:*:*:*:*:*:*",
          "match_criteria_id": "D7B49D71-6A31-497A-B6A9-06E84F086E7A",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:financial_services_data_integration_hub:8.0.3:*:*:*:*:*:*:*",
          "match_criteria_id": "25B0D39E-A630-4C85-AF90-396FB3E0FE7A",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:financial_services_data_integration_hub:8.0.6:*:*:*:*:*:*:*",
          "match_criteria_id": "987A0C35-4C7F-4FFB-B47B-37B69A32F879",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:hospitality_opera_5:5.6:*:*:*:*:*:*:*",
          "match_criteria_id": "95D6A426-B914-401F-9AB0-5F5E3A3FE138",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        },
        {
          "configuration": 1,
          "configuration_operator": null,
          "criteria": "cpe:2.3:a:oracle:mysql_enterprise_monitor:8.0.23:*:*:*:*:*:*:*",
          "match_criteria_id": "955955B3-95F0-4887-97DC-58FB7A13F257",
          "node_negate": false,
          "node_operator": "OR",
          "version_end_excluding": null,
          "version_end_including": null,
          "version_start_excluding": null,
          "version_start_including": null,
          "vulnerable": true
        }
      ],
      "cpe_matches_truncated": false,
      "cve_id": "CVE-2020-17530",
      "cve_tags": [],
      "cvss": {
        "base_score": 9.8,
        "base_severity": "CRITICAL",
        "source": "nvd@nist.gov",
        "type": "Primary",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
        "version": "3.1"
      },
      "cvss_metrics": [
        {
          "base_score": 9.8,
          "base_severity": "CRITICAL",
          "exploitability_score": 3.9,
          "impact_score": 5.9,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "version": "3.1"
        },
        {
          "base_score": 9.8,
          "base_severity": "CRITICAL",
          "exploitability_score": 3.9,
          "impact_score": 5.9,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary",
          "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "version": "3.1"
        },
        {
          "base_score": 7.5,
          "base_severity": "HIGH",
          "exploitability_score": 10,
          "impact_score": 6.4,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "vector": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "version": "2.0"
        }
      ],
      "cwes": [
        {
          "cwe_id": "CWE-917",
          "source": "nvd@nist.gov",
          "type": "Primary"
        },
        {
          "cwe_id": "CWE-917",
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "description": "Forced OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution. Affected software : Apache Struts 2.0.0 - Struts 2.5.25.",
      "in_kev": true,
      "kev": {
        "action_due": "2022-05-03",
        "date_added": "2021-11-03",
        "required_action": "Apply updates per vendor instructions.",
        "vulnerability_name": "Apache Struts Remote Code Execution Vulnerability"
      },
      "last_modified": "2026-06-17T02:59:05.640",
      "nvd_url": "https://nvd.nist.gov/vuln/detail/CVE-2020-17530",
      "published": "2020-12-11T02:15:10.883",
      "reference_count": 23,
      "source_identifier": "security@apache.org",
      "status": "Analyzed"
    }
  ],
  "source_url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cweId=CWE-917&hasKev&noRejected&resultsPerPage=3&startIndex=0",
  "start_index": 0,
  "total_results": 8
}
```
