Subscribe
Pipe CVEDatabase updates into Feedly, Inoreader, Slack, Teams, or any RSS-aware tool. The URL is the subscription — no account required.
/feed/cve/recentThe newest 50 CVEs published to the National Vulnerability Database.
/feed/cve/criticalNew CVEs with CRITICAL severity from the last 30 days.
/feed/cve/highNew CVEs with HIGH severity from the last 30 days.
/feed/cve/kevCVEs recently added to the CISA Known Exploited Vulnerabilities catalog.
/feed.xmlCVEDatabase blog posts and security guides.
Replace the vendor name with any vendor you track. Product feeds use /feed/vendor/<vendor>/<product>.
/feed/vendor/microsoftNew CVEs affecting Microsoft products.
/feed/vendor/appleNew CVEs affecting Apple products.
/feed/vendor/ciscoNew CVEs affecting Cisco products.
/feed/vendor/googleNew CVEs affecting Google products.
Compose a feed from any combination of keyword, vendor, product, and severity.
/feed/search?vendor=microsoft&severity=CRITICALCritical CVEs affecting Microsoft.
All feeds support If-None-Match conditional GETs and return 304 when nothing has changed.