NVD CPE Match API
CVE-to-product match criteria
NVD CPE Match API is one of 6 APIs that NVD publishes on the APIs.io network, described by a machine-readable OpenAPI specification.
This API exposes 1 JSON Schema definition.
Tagged areas include CPE Match. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, a getting-started guide, authentication docs, rate-limit docs, and 1 JSON Schema.
This API exposes 1 operation across 1 path, and defines 1 schema. It is described by OpenAPI 3.1.0, at version 2.0.0.
Requests are made against a single base URL, https://services.nvd.nist.gov/rest/json.
Metadata
The identity and technical contract details declared by the specification.
Authentication & Security 1
NVD CPE Match API declares
1 security scheme
for authenticating requests.
An API key is passed in the header as apiKey (APIKey).
By default, every request must be authenticated, though some operations may also be called without credentials.
APIKey— NVD API key (optional but recommended). Without a key: 5 requests/30s. With a key: 50 requests/30s. Request at https://nvd.nist.gov/developers/request-an-api-k…
Paths & Operations 1
Across 1 path, the API surfaces 1 operation — 1 GET. Each is listed below with its method, path, parameters, and response codes.
CVE-to-product match criteria
Schemas 1
The contract defines 1 schema that model the data the API accepts and returns. The most detailed is CPEMatchResponse (5 properties). Each schema is shown below with its type and property counts.
Specification
The full machine-readable OpenAPI contract behind this narrative.
Source
More from NVD 5
Other APIs NVD publishes across the network.