{"uid":"cap_n2WumMemcb9Vzz7tg73p8","slug":"nvd-cve-lookup-api-4cd1dad1","name":"NVD CVE Lookup API","description":"NVD (National Vulnerability Database) CVE record by id, or search by keyword in recent CVEs: description, severity and CVSS base score, status, published and last-modified dates, and whether it is on CISA's Known Exploited list. Cached; records refreshed within about 48 hours.","url":"https://api.maxwellinternational.ai/v1/nvd/cve?utm_source=zero.xyz","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"type":{"type":"string","const":"http"},"method":{"enum":["GET","HEAD","DELETE"],"type":"string"},"headers":{"type":"object","additionalProperties":{"type":"string"}},"queryParams":{"type":"object","additionalProperties":{"type":"string"}}},"additionalProperties":false},"output":{"type":"object","required":["type"],"properties":{"type":{"type":"string"},"example":{"type":"object"}}}}},"responseSchema":{"type":"json","example":{"id":"CVE-2026-100070","ok":true,"score":null,"source":"nvd-cves-2.0","rawLite":true,"severity":null,"fetchedAt":"2026-09-26T06:29:10.801Z","published":"2026-09-25T14:17:13.400","vulnStatus":"Received","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilte...","lastModified":"2026-09-25T14:17:13.400"}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.005","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.005/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.005","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.005","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_ZTCVDIGek-qnbZ9DEjMiZ","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.005","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Fetches CVE vulnerability details from the National Vulnerability Database (NVD) by CVE ID, returning severity, description, status, and timestamps.","exampleAgentPrompt":"Can you look up the NVD details for CVE-2024-21413 — I need the description, severity, and current vulnerability status?","exampleUseCases":[{"title":"Security advisory triage","prompt":"I just got an alert about CVE-2023-44487 — can you pull its NVD record and tell me the severity score, status, and what it affects?"},{"title":"Patch prioritization check","prompt":"We're deciding which CVEs to patch first this sprint. Can you fetch the NVD data for CVE-2024-3400 so I can see if it's Critical and whether it's been fully analyzed?"},{"title":"Automated vulnerability enrichment","prompt":"For our vulnerability report, can you grab the full NVD entry for CVE-2021-44228 including its description, published date, and last modified timestamp?"}],"resultDescription":"Returns a JSON object containing the CVE ID, source (nvd-cves-2.0), vulnerability description, severity level, CVSS score (if available), vulnerability status (e.g. Received, Analyzed), published date, last modified date, and a fetchedAt timestamp. May return rawLite=true indicating a lightweight record without full CVSS details.","failureModes":["CVE ID not found — returns empty or error if the CVE does not exist in NVD","Malformed CVE ID format in query params returns a validation error","NVD upstream unavailability may cause delayed or failed responses","Payment failure (x402) causes 402 response before data is returned","Very new CVEs may have null severity/score fields as NVD has not yet analyzed them"],"whenToPreferThis":"Use this endpoint when you need structured, NVD-sourced CVE records including description, severity, and status for a known CVE ID. Prefer this over scraping the NVD website directly or using Mitre's CVE API when you need a pay-per-call, agent-friendly JSON interface without API key setup. Ideal for security agents that need to enrich vulnerability data on demand.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-10-02T18:39:03.722Z","isFirstParty":false,"canonicalSlug":"nvd-cve-lookup-api-4cd1dad1"}