OEM Vulnerability Intelligence operations require the OEM module and record query_tags in audit logs.

Operations

All operations use POST.

Search a CVE

Retrieve a filtered feed

Feed fields

The feed is limited to 60 requests per minute and deducts one OEM credit on success. Other OEM search routes use OEM credit controls and may use a service-level default where no explicit route limit is set. Correlate vulnerability intelligence with OEM platform vulnerabilities before declaring an asset affected. Use Package Vulnerability Monitoring for bounded advisory pagination, alias deduplication, and affected-version handling.