opencve

OpenCVE (at https://www.opencve.io/) is an open-source vulnerability intelligence platform designed to help security teams (SecOps, DevSecOps, IT security professionals, and organizations of all sizes) monitor, manage, and stay ahead of Common Vulnerabilities and Exposures (CVEs) efficiently.

It’s essentially a centralized tool for CVE tracking and alerting, aggregating data from multiple authoritative sources and providing features to filter, prioritize, subscribe to, and collaborate on vulnerabilities relevant to your software stack (vendors, products, libraries, etc.).

Main Purpose

In a world where thousands of new CVEs are published every year (often hundreds per week), keeping track manually is overwhelming. OpenCVE acts as a “central hub” to:

It’s built for both solo users / small teams and large enterprises, with a focus on reducing noise (false positives) and speeding up response times.

Key Features (as of March 2026)

Deployment Options

Pricing (as of March 2026)

Tiered SaaS plans (monthly or yearly, with discounts for annual):

Higher plans add features like longer history, more API capacity, advanced audit logs, etc.

Who Uses It?

In short, if you need to monitor CVEs for specific software without drowning in generic feeds, and want alerts + team workflow features, OpenCVE is a modern, flexible option — especially strong for its open-source roots and AI-assisted prioritization.

Official docs: https://docs.opencve.io/
GitHub repo: https://github.com/opencve/opencve (active development, recent releases like v2.4.0 in 2025 added multi-dashboards, CSV exports, etc.)