API Evangelist API Evangelist
API Learnings
Toolbox
API Evangelist LLC

CISA Known Exploited Vulnerabilities (KEV) Catalog

The KEV catalog is CISA's authoritative list of vulnerabilities actively exploited in the wild. The full catalog is published as JSON and CSV at cisa.gov/sites/default/files/feeds, mirrored on GitHub at cisagov/kev-data, and accompanied by a versioned JSON Schema. Federal civilian agencies must remediate KEV entries by the per-entry dueDate under BOD 22-01.

Documentation

Specifications

Schemas & Data

Other Resources

JSONSchema

known_exploited_vulnerabilities_schema.json Raw ↑