Terms of Use
Last updated: September 28, 2026
These terms govern your use of CVE Vault at cvevault.com, including the home page, search, CVE record pages, and the CVE Hub. By using the site, you agree to these terms. If you do not agree, do not use the site.
What the site provides
CVE Vault is a free informational tool. It lets you search and browse Common Vulnerabilities and Exposures (CVE) records drawn from publicly available open-source CVE data, and it shows summary statistics on the hub. The site does not sell software, security services, or user accounts.
Not professional advice
Content on CVE Vault is for general information and security awareness. It is not security consulting, legal advice, or a promise that a product is safe or unsafe. Official records from sources such as MITRE and the National Vulnerability Database should be checked before you rely on a CVE for patching, disclosure, or compliance decisions. Descriptions, scores, dates, and references can be incomplete, outdated, or incorrect.
Acceptable use
You may use the site to look up published vulnerability information for lawful defensive, research, and educational purposes. You agree not to:
- Use the site or its content to break the law, including unauthorized access to computer systems.
- Interfere with the site, probe it for weaknesses, overload it, or attempt to bypass its normal operation.
- Scrape or automate requests in a way that degrades service for other visitors.
- Misrepresent CVE Vault content as an official advisory from a vendor, MITRE, or another authority.
Some CVE pages link to third-party references. Those links are provided so readers can review public source material. You are responsible for using any linked material only in ways the law allows.
Intellectual property
The CVE Vault name, page layout, and original site text belong to the site operator. CVE identifiers, vulnerability descriptions, vendor names, and related records remain the property of their respective owners and are shown from open-source and public sources. Trademarks, including CVE, belong to their owners. You may not copy the site's design or branding and present it as your own service.
Third-party links
Record pages may link to vendor advisories, references, and other external sites. Those sites are not operated by CVE Vault. We do not control their content, availability, or privacy practices, and a link is not an endorsement.
Availability and changes
The site is provided as available. Search results, statistics, and individual records may change, disappear, or be temporarily unavailable while data is updated or the service is maintained. We may change, suspend, or discontinue any part of CVE Vault, and we may update these terms by posting a new version on this page. The date above shows when these terms were last updated. Continued use after an update means you accept the revised terms.
Disclaimer and liability
CVE Vault is provided "as is" and "as available," without warranties of any kind, whether express or implied, including warranties of accuracy, fitness for a particular purpose, and non-infringement. To the fullest extent permitted by law, the site operator is not liable for any loss or damage arising from your use of the site, reliance on CVE content, or inability to access the site, including decisions you make about patches, disclosures, or system security.
Contact
CVE Vault is published at cvevault.com. The site does not offer user accounts or a contact form. Information about data handling is in the Privacy Policy.