# NVD CVE Vulnerability Search (`enfex/nvd-cve-search`) Actor

Search the official NVD API for a single keyword with a hard result cap and normalized public CVE metadata.

- **URL**: https://apify.com/enfex/nvd-cve-search.md
- **Developed by:** [Marcel K](https://apify.com/enfex) (community)
- **Categories:** Developer tools
- **Stats:** 2 total users, 1 monthly users, 100.0% runs succeeded, 0 bookmarks
- **User rating**: No ratings yet

## Pricing

$5.00 / 1,000 searched nvd keywords

This Actor is paid per event. You are not charged for the Apify platform usage, but only a fixed price for specific events.

Learn more: https://docs.apify.com/platform/actors/running/actors-in-store#pay-per-event

## What's an Apify Actor?

Actors are web data automations that power AI and operations. They run on the Apify platform to scrape websites, process data, connect APIs, and automate workflows.
In Batch mode, an Actor accepts a well-defined JSON input, performs an action which can take anything from a few seconds to a few hours,
and optionally produces a well-defined JSON output, datasets with results, or files in key-value store.
In Standby mode, an Actor provides a web server which can be used as a website, API, or an MCP server.
Actors are written with capital "A".

## How to integrate an Actor?

If asked about integration, you help developers integrate Actors into their projects.
You adapt to their stack and deliver integrations that are safe, well-documented, and production-ready.
The best way to integrate Actors is as follows.

- **AI agents and MCP clients** — the [Apify MCP server](https://docs.apify.com/integrations/mcp.md) at `https://mcp.apify.com` (remote, streamable HTTP, OAuth on first use).
- **Agentic workflows and local Actor development** — [Agent Skills](https://apify.com/.well-known/agent-skills/index.json) with the [Apify CLI](https://docs.apify.com/cli/docs.md): `npm install -g apify-cli`, then `apify login`.
- **JavaScript/TypeScript projects** — the official [JS/TS client](https://docs.apify.com/api/client/js/docs.md): `npm install apify-client`.
- **Python projects** — the official [Python client](https://docs.apify.com/api/client/python/docs.md): `pip install apify-client`.
- **Any other language** — the [REST API](https://docs.apify.com/api/v2.md).

For usage examples, see the [API](#api) section below.

For more details, see Apify documentation as [Markdown index](https://docs.apify.com/llms.txt) and [Markdown full-text](https://docs.apify.com/llms-full.txt).

# README

## Public CVE Vulnerability Scraper

Scrape the official NVD CVE API for **one bounded keyword query** and receive clean, machine-readable CVE metadata. This is suited to a scheduled vulnerability-review queue, not to intrusion, scanning, or exploit activity.

### What it does

- Queries only the documented NVD CVE API v2 endpoint on a fixed host.
- Accepts one 2–120-character keyword and returns at most 10 CVEs (default 5).
- Outputs CVE ID, publication/update timestamps, English description with email addresses redacted, and available CVSS v3.1 summary fields.
- Uses no browser, proxy, login, cookie, arbitrary URL, private asset, or user profile.
- Returns structured `error`, `not_found`, or `partial` rows rather than silently failing.

### Input example

```json
{ "keyword": "openssl", "maxResults": 5 }
```

### Pricing

Current price: **$0.005 per `searched-nvd-keyword` event**. One run performs one bounded NVD keyword search; event charging happens before the source request, so the maximum event charge is $0.005 per run.

### Source and limitations

This product uses the NVD API but is not endorsed or certified by the NVD. It is an independent, unofficial tool and is not affiliated with NIST or the NVD.

NVD data is public technical vulnerability information. Results can be incomplete, delayed, revised, or context-dependent. Do not treat output as a complete asset inventory, a patch decision, an exploit assessment, or security advice. Validate against authoritative vendor advisories and your own security process.

Source and terms evidence: `source-and-terms.md`.

# Actor input Schema

## `keyword` (type: `string`):

One product, vendor, technology, or vulnerability keyword for the official NVD API. No URLs, credentials, or private systems are accepted.

## `maxResults` (type: `integer`):

Maximum normalized CVE records to return. Hard-capped at 10.

## Actor input object example

```json
{
  "keyword": "openssl",
  "maxResults": 5
}
```

# Actor output Schema

## `results` (type: `string`):

Default dataset items from this bounded public-source query.

# API

You can run this Actor programmatically using our API. Below are code examples in JavaScript, Python, and CLI, as well as the OpenAPI specification and MCP server setup.

## JavaScript example

```javascript
import { ApifyClient } from 'apify-client';

// Initialize the ApifyClient with your Apify API token
// Replace the '<YOUR_API_TOKEN>' with your token
const client = new ApifyClient({
    token: '<YOUR_API_TOKEN>',
});

// Prepare Actor input
const input = {
    "keyword": "openssl"
};

// Run the Actor and wait for it to finish
const run = await client.actor("enfex/nvd-cve-search").call(input);

// Fetch and print Actor results from the run's dataset (if any)
console.log('Results from dataset');
console.log(`💾 Check your data here: https://console.apify.com/storage/datasets/${run.defaultDatasetId}`);
const { items } = await client.dataset(run.defaultDatasetId).listItems();
items.forEach((item) => {
    console.dir(item);
});

// 📚 Want to learn more 📖? Go to → https://docs.apify.com/api/client/js/docs

```

## Python example

```python
from apify_client import ApifyClient

# Initialize the ApifyClient with your Apify API token
# Replace '<YOUR_API_TOKEN>' with your token.
client = ApifyClient("<YOUR_API_TOKEN>")

# Prepare the Actor input
run_input = { "keyword": "openssl" }

# Run the Actor and wait for it to finish
run = client.actor("enfex/nvd-cve-search").call(run_input=run_input)

# Fetch and print Actor results from the run's dataset (if there are any)
print("💾 Check your data here: https://console.apify.com/storage/datasets/" + run["defaultDatasetId"])
for item in client.dataset(run["defaultDatasetId"]).iterate_items():
    print(item)

# 📚 Want to learn more 📖? Go to → https://docs.apify.com/api/client/python/docs/quick-start

```

## CLI example

```bash
echo '{
  "keyword": "openssl"
}' |
apify call enfex/nvd-cve-search --silent --output-dataset

```

## MCP server setup

```json
{
    "mcpServers": {
        "apify": {
            "command": "npx",
            "args": [
                "mcp-remote",
                "https://mcp.apify.com/?tools=enfex/nvd-cve-search",
                "--header",
                "Authorization: Bearer <YOUR_API_TOKEN>"
            ]
        }
    }
}

```

## OpenAPI specification

Download the OpenAPI definition: https://api.apify.com/v2/acts/XkEtAc4cCnjV8GR0b/builds/JPdIhFBkEFGqrcLS7/openapi.json
