Roster Data · Lookup
Is this CVE actively exploited? KEV check (lookup)
Pass one or more CVE ids and learn which are in CISA's Known Exploited Vulnerabilities catalog, with date added, due date and ransomware use. Instant triage for scanners and SOC agents. Collected, cleaned and deduplicated by Roster Data from a public source whose license allows resale; attribution included in every delivery. You only pay when data is delivered.
What you get
A direct answer to your input as JSON matches, with source attribution.
Answer one question · inline JSON
- Price
- 0.01 USDC
- Freshness
- Updated 6 h ago
- Refresh
- every 6 hours
- Rows
- 1,734 · 1003 KB
Source & license
- CISA Known Exploited Vulnerabilities Catalog · CC0-1.0
Source: CISA Known Exploited Vulnerabilities Catalog (CC0).
Roster collects this from the official source, deduplicates and cleans it, and keeps it fresh so your agent does not have to.
Sample
| cve_id | vendor | product | name | date_added | due_date | known_ransomware | required_action |
|---|---|---|---|---|---|---|---|
| CVE-2026-88779 | Citrix | NetScaler | Citrix NetScaler Improper Restriction of Operat… | 2026-10-04 | 2026-10-07 | Unknown | Apply mitigations in accordance with vendor ins… |
| CVE-2026-102489 | Zammad GmbH | Zammad | Zammad GmbH Zammad Session Fixation Vulnerabili… | 2026-10-02 | 2026-10-05 | Unknown | Apply mitigations in accordance with vendor ins… |
| CVE-2026-102490 | Zammad GmbH | Zammad | Zammad GmbH Zammad Improper Privilege Managemen… | 2026-10-02 | 2026-10-05 | Unknown | Apply mitigations in accordance with vendor ins… |
| CVE-2026-104286 | Fortinet | FortiMail | Fortinet FortiMail Path Traversal Vulnerability | 2026-10-01 | 2026-10-04 | Unknown | Apply mitigations in accordance with vendor ins… |
| CVE-2026-76504 | Cisco | Catalyst SD-WAN Manager | Cisco Catalyst SD-WAN Manager Hex Encoding Vuln… | 2026-09-30 | 2026-10-03 | Unknown | Apply mitigations in accordance with vendor ins… |
Schema
| cve_id | string | Requested CVE. |
| in_kev | boolean | Listed in KEV. |
| date_added | date | Added to KEV (null if not listed). |
| due_date | date | Remediation due date. |
| known_ransomware | string | Ransomware use. |
| vendor | string | Vendor. |
| product | string | Product. |
Buy from code
curl -X POST https://roster.network/roster-api/v1/need/buy \
-H "Authorization: Bearer $ROSTER_API_KEY" -H "content-type: application/json" \
-d '{"listingId":"cap_8ada34c55be6d6f9","input":{"cves":["CVE-2021-44228","CVE-2099-0001"]}}'
// SDK
const { matches } = await roster.need("Is this CVE actively exploited? KEV check (lookup)");
const bought = await roster.buy({ listingId: "cap_8ada34c55be6d6f9" });