XowiaScan
← All tools

CVE Lookup

Web Security

Search known CVEs by product or keyword using the CIRCL vulnerability feed.

What is CVE Lookup?

CVE Lookup queries the CIRCL CVE database for vulnerabilities matching a product name or keyword, returning identifiers, severity and summaries so you can connect a fingerprinted technology to its known weaknesses.

It closes the loop between recon and exploitation: detect a version, then find what is publicly known to affect it.

What you get

  • CVE identifiers — the official IDs for matched vulnerabilities.
  • Severity scores — CVSS ratings to prioritize.
  • Summaries — a description of each issue and affected versions.
  • Keyword & product search — query by software name or free text.

Where it fits in your workflow

  • Map a version from Tech Fingerprint to exploitable CVEs.
  • Build a known-vulnerability section for a report.
Use CVE Lookup

Run it from your dashboard.

Create free account Sign in Use via API

At a glance

CategoryWeb Security
RunsServer-side
Token cost 3 / run (free tier)
AccessFree
Status● Live

Frequently asked questions

Does a matching CVE mean the target is exploitable?

Not necessarily — patches, backports and configuration can mitigate a CVE. Use the result as a lead to verify against the actual target.

Explore more tools →