CVE Tools
Detection, not speculation · Nuclei + OpenVAS

Am I actually vulnerable?

Paste a CVE ID and get the exact detection check to run against your own systems — a ready-to-run Nuclei command or the OpenVAS NVT OID with a GMP query to confirm a host is affected.

Free · runs locally · no signup

scanner coverage live
157,194CVEs you can self-check
detectable today by Nuclei or OpenVAS
Nuclei36,686
OpenVAS125,027
In CISA KEV
522
Newest check added
Nuclei today
OpenVAS today
Prefer we run it? Managed external scan
Running the check once is easy — the work is knowing every asset it applies to and re-running it as your surface shifts. We do continuous external scanning across your public IPs and domains and report only what's actually exposed. External-only, non-intrusive, no agents.
Scan my external estate

Latest high-severity CVEs you can verify

Newest critical/high vulnerabilities a scanner can check — Nuclei or OpenVAS.

Trending CVEs to verify now

What the security world is discussing right now — and can be checked with a scanner.

CVE-2025-49113↑ trendingKEV◎ 1

Roundcube Webmail before 1.5.10 and 1.6.x before 1.6.11 allows remote code execution by authenticated users because the _from parameter in a URL is not validated in program/actions/settings/upload....

CVE-2026-8037↑ trendingKEV◎ 1

OS Command Injection Remote Code Execution Vulnerability in Progress LoadMaster, ECS Connection Manager, Object Scale Connection Manager & MOVEit WAF

CVE-2026-63077↑ trendingKEV◎ 1

In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent polling protocol

CVE-2026-72898↑ trendingKEV◎ 1

Metabase SQL injection via password reset endpoint

CVE-2026-64638↑ trending◎ 1

WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malicious third-party website hosted by an attacker, it is possible for this to be ...

CVE-2024-55591↑ trendingKEV◎ 1

An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS version 7.0.0 through 7.0.16 and FortiProxy version 7.0.0 through 7.0.19 and 7.2.0 through 7.2...

CVE-2026-15409↑ trendingKEV◎ 1

A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the appliance to make...

CVE-2018-13382↑ trendingKEV◎ 1

An Improper Authorization vulnerability in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.0 to 5.6.8 and 5.4.1 to 5.4.10 and FortiProxy 2.0.0, 1.2.0 to 1.2.8, 1.1.0 to 1.1.6, 1.0.0 to 1.0.7 under SSL VPN web...

Frequently asked questions

How do I check whether a host is affected by a CVE?

Enter the CVE ID above. If a scanner covers it, we hand you the exact check to run against your own target — a ready-to-run Nuclei command and/or the OpenVAS NVT OID with a GMP query to confirm the NVT is in your feed.

Is there a Nuclei template for this CVE, and how do I run it?

When an official ProjectDiscovery template exists we give you the template ID and a copy-ready command (nuclei -id <CVE> -u <target>). If no template is published yet, we say so plainly rather than fabricate one.

What is the OpenVAS NVT OID for a CVE and how do I confirm it?

We list the detecting NVT OID(s) and a GMP query (get_nvts nvt_oid=...) so you can confirm the NVT is present in your Greenbone feed at your feed version before trusting a clean result.

Does a positive detection mean the host is exploitable?

No. These are detection checks — they fingerprint the vulnerable condition (service, version, reachable endpoint), not exploitability. Cross-reference CISA KEV and EPSS to judge real-world risk.

What if no scanner covers the CVE I'm checking?

Not every CVE has a published Nuclei or OpenVAS check. When neither covers it, we tell you and point you to the affected products so you can check manually — or run a managed external scan and we'll confirm exposure for you.