Skip to content

CVE function

The CVE function keeps ScanNinja's vulnerability data current. It:

  • Mirrors the NVD CVE feed and serves a tenant-scoped subset.
  • Enriches each CVE with EPSS score, KEV inclusion, and exploit-availability flags from public sources.
  • Provides the lookup the scanner uses during CVE correlation.

Detailed documentation is being prepared and will appear here.

Planned pages:

  • Data sources and refresh cadence
  • Lookup API reference