Legal Information

Disclaimers, trademarks, and data attribution

Last updated: 2026-01-10

Not Affiliated / No Affiliation

CVEScope is not affiliated with or endorsed by the CVE Program or The MITRE Corporation. CVE is a trademark of The MITRE Corporation.

CVEScope is not affiliated with or endorsed by NIST/NVD, CISA, FIRST, CIRCL, or any vendor referenced on this site.

Data Sources & Attribution

National Vulnerability Database (NVD)

NVD provides vulnerability metadata and enrichment (including CVSS where available) for CVE identifiers. CVE identifiers originate from the CVE Program ecosystem and are referenced here for identification purposes.

nvd.nist.gov

CISA Known Exploited Vulnerabilities (KEV)

Data on actively exploited vulnerabilities from the Cybersecurity and Infrastructure Security Agency (CISA), used to flag known exploited vulnerabilities.

cisa.gov/known-exploited-vulnerabilities

Exploit Prediction Scoring System (EPSS)

Exploitation probability scores from the FIRST EPSS project, used as an exploitation likelihood/probability signal.

first.org/epss

CIRCL

CIRCL (Computer Incident Response Center Luxembourg) provides vulnerability lookup/correlation data used as an additional enrichment source.

CVEScope links to external primary references (vendor advisories and public research) on each record. Where third-party sites are referenced, CVEScope provides links and metadata and does not claim ownership of their content. These sources remain authoritative for remediation guidance.

Beta Service & Reliability Notice

CVEScope is currently a beta service. Data may be incomplete, delayed, or incorrect. Fields, scoring methodologies, and data sources may change without prior notice. We are continuously working to improve accuracy and coverage.

AI-assisted Processing Disclosure

AI-assisted extraction and normalisation may be used to structure vendor advisory data (e.g., product/version parsing) and generate summaries. Outputs (including extracted fields and summaries) may be incomplete or inaccurate. Primary sources are linked for verification and should be treated as authoritative.

Acceptable Use Policy

To ensure fair usage and service availability for all users, the following are prohibited:

  • No scraping, crawling, or automated harvesting of data without explicit written permission from CVEScope.
  • No automated querying at scale (scripts/bots) outside documented limits.
  • No attempts to bypass rate limits, access controls, or security measures.
  • No use of bulk export tools or functionalities during the beta phase.
  • No republishing or reselling substantial portions of the aggregated dataset in a competing service.

CVEScope may apply rate limits and block abusive traffic to protect service availability, and may suspend accounts for policy violations.

Warranty & Liability Disclaimer

This platform and its content are provided "as is" and "as available" without any warranties of any kind, either express or implied. We do not warrant that the service will be uninterrupted, error-free, or free from harmful components.

Users are solely responsible for independently verifying any information or data before making decisions or taking action. CVEScope and its providers shall not be liable for any direct, indirect, incidental, special, consequential, or punitive damages arising out of your access to or use of the platform.

Contact & Issue Reporting

Report data issues or bugs: contact@cvescope.ai

Security issues affecting CVEScope: security@cvescope.ai

CVEScope

Unified CVE intelligence, refreshed automatically. Track emerging, exploited, and high-risk vulnerabilities with contextual scoring.

All systems operational

© 2026 CVEScope. All rights reserved.

CVEScope is not affiliated with or endorsed by the CVE Program or The MITRE Corporation. CVE is a trademark of The MITRE Corporation.

Legal Information