Vulnerability Intelligence

A remediation-focused view of the NVD

This is not the CVE database itself: it is a curated snapshot of the columns most useful for prioritising vulnerability remediation (severity, attack vector, exploitation state and patch availability), derived from the National Vulnerability Database (NVD). The NVD is the U.S. government repository of standards-based vulnerability data, maintained by NIST, and is the authoritative source for CVE records, so this snapshot should always be verified against it. All timestamps are in UTC.

Updated daily · last generated 2026-09-17 21:39:08 UTC

Last Published CVE

CVE-2026-92992

2026-09-17 19:17:07

Last Modified CVE

CVE-2025-20311

2026-09-17 20:09:18

Records Tracked

394,785

across every year since 1999

Last 24 months

What's happening in the NVD

Monthly publish volume

New CVEs published per month.

Actively exploited (KEV)

CVEs added to CISA's Known Exploited Vulnerabilities catalog per month.

Severity mix over time

CVSS base severity of newly published CVEs, by month.

Top weaknesses & attack vectors

Dominant CWE categories and attack vector exposure, last 24 months.

📐 Schema

See every column in the snapshot, with a preview of sample rows.

View schema
⬇️ Downloads

Grab the full history as a single compressed file, or just the year you need, plus a ready-made dbt seed recipe.

View downloads
💡 Now What?

Worked examples for turning this snapshot into an actual remediation priority list.

View examples