Live data
The CVE feed Noxen scans against
Noxen ships a daily-rebuilt vulnerability snapshot sourced from VulnCheck NVD++ and OSV.dev (Debian, Ubuntu, Rocky Linux, AlmaLinux). The numbers below are live — they're what the production manifest endpoint is reporting right now, fetched directly from the feed CDN.
- Total CVE records Loading…
- Last build Loading…
- Snapshot size Loading…
- Snapshot date Loading…
Sources
Where the data comes from
The feed is a unioned, deduped index across three upstream sources. Each row in the table is a record count from the latest build.
| Source | What it covers | Records (live) |
|---|---|---|
| VulnCheck NVD++ | NIST NVD, augmented with VulnCheck's enrichment for the post-Feb-2024 backlog | Loading… |
| OSV.dev | Distro-specific backport tracking for Debian, Ubuntu, Rocky Linux, and AlmaLinux | Loading… |
Trust
How you can verify what's served
Every snapshot is signed with Ed25519. The Mac app verifies the manifest's signature against a bundled public key before importing any record. Sources are mirrored, not interpreted — Noxen never re-scores or fabricates CVE data.
-
Public key
6GP2QJveFk90XWEdWn86AXY5h7CjnrV1LnfhjdlCgO8= -
Manifest URL
feed.noxen.app/manifest.json - Signing algorithm Ed25519 over canonicalised JSON (sorted keys at every level)
- Snapshot format Gzipped NDJSON (one JSON record per line, LF-delimited)
Live listings
Top recent critical CVEs
The most-recently-published critical-severity CVEs in the feed, deduped to one row per CVE ID, newest first. Refreshed when the feed itself rebuilds.
Top recent high-severity CVEs
Same shape as the critical list, one severity bucket down. High-CVSS findings still demand attention but typically allow a normal patch-cycle response.
By distribution
What Noxen tracks per distro
Per-ecosystem dashboards with the same headline numbers, framed for each distro.
- Ubuntu 24.04 LTSCVE coverage for Ubuntu 24.04
- Debian 12 BookwormCVE coverage for Debian 12
- Rocky Linux 9CVE coverage for Rocky 9 (incl. AlmaLinux + Red Hat backports)
Want to scan your fleet?
Noxen matches this feed against your installed package versions over SSH. Mac-native. Agentless. $79 one-time at launch.