Keep OpenCVE synchronized with your security stack. Import your software inventory, manage projects and subscriptions, automate CVE triage, and feed your internal workflows with enriched vulnerability intelligence.
From software inventory to actionable CVE workflows, without manual synchronization.
Read the documentation

Your CMDB already knows which software your organization runs. OpenCVE API v2 lets you use that data to automatically maintain project subscriptions, so your vulnerability monitoring always reflects your real environment.
Your inventory changes. OpenCVE follows.

Choose read-only, read-write, or granular permissions according to your integration and plan.
Use standard Bearer authentication and JSON requests from any programming language or platform.
Synchronize inventories, update CVEs, manage projects, and connect OpenCVE to your operational tooling.
Preview real API workflows for CVE search, project management, inventory synchronization, and CVE triage.
Response shortened for readability.
Keep projects and software subscriptions synchronized with internal inventories and provisioning workflows.
Feed enriched CVE intelligence into investigation, prioritization, and response processes.
Automate customer onboarding, subscriptions, triage, and reporting across multiple environments.
Connect vulnerability intelligence to engineering workflows, CI/CD pipelines, and internal developer tooling.
Start synchronizing inventories, automating CVE triage, and building custom vulnerability workflows today.
Read the API documentation