Description
When using default nvd-source the latest entry in cve.db build from scratch is from 2026-08-24
To reproduce
Steps to reproduce the behaviour:
- remove XDG_CACHE_HOME/cve-bin-tool to start from scratch
- scan using these flags/this config python3 -m cve_bin_tool.cli -u now --disable-data-source "EPSS, GAD, OSV, REDHAT" ./emtpy-scan
- on this file empty-dir just interested in definitions db
Expected behaviour: should have recent entries as shown here https://nvd.nist.gov/vuln/data-feeds
Actual behaviour:
https://mirror.cveb.in/nvd/json/cve/2.0/ shows
Version/platform info
Version of CVE-bin-tool( e.g. output of cve-bin-tool --version): main rev. b1d0905
Installed from pypi or github?
Operating system: WSL / ubuntu 24
Python version (e.g. python3 --version): CPython 3.14.7
Running in any particular CI environment we should know about? (e.g. Github Actions)
Anything else?
related #5805
Description
When using default nvd-source the latest entry in cve.db build from scratch is from 2026-08-24
To reproduce
Steps to reproduce the behaviour:
Expected behaviour: should have recent entries as shown here https://nvd.nist.gov/vuln/data-feeds
Actual behaviour:
https://mirror.cveb.in/nvd/json/cve/2.0/ shows
Version/platform info
Version of CVE-bin-tool( e.g. output of cve-bin-tool --version): main rev. b1d0905
Installed from pypi or github?
Operating system: WSL / ubuntu 24
Python version (e.g. python3 --version): CPython 3.14.7
Running in any particular CI environment we should know about? (e.g. Github Actions)
Anything else?
related #5805