What is the CISA KEV catalog?
The CISA Known Exploited Vulnerabilities catalog is a list of vulnerabilities that have evidence of active exploitation and require prioritized remediation for covered organizations.
Resource
The CISA Known Exploited Vulnerabilities catalog helps teams prioritize vulnerabilities that are actively exploited in the wild. Huntertech.io makes the KEV list searchable by vendor, product, CWE, ransomware use, and due date.
Search known exploited vulnerabilities by vendor, product, CWE, ransomware use, and due date.
Open pageReview CVE records and vulnerability metadata from the National Vulnerability Database.
Open pageUnderstand CVSS vectors and severity scoring details.
Open pageBrowse related security tools for vulnerability and certificate workflows.
Open pageThe CISA Known Exploited Vulnerabilities catalog is a list of vulnerabilities that have evidence of active exploitation and require prioritized remediation for covered organizations.
Teams should compare KEV entries against their environment, prioritize affected products, and track required action due dates for remediation planning.
Many KEV entries include whether ransomware use is known. Huntertech.io exposes that field as a filter for vulnerability triage.