Calculate CVSS v4.0 vulnerability severity scores
10.0
The CVSS v4.0 (Common Vulnerability Scoring System) standard is the official framework used to rate the severity of software vulnerabilities.
This interactive calculator makes it easy for security analysts to grade attack vectors, privilege requirements, user interaction, and impact metrics to obtain the final score.
Generate normalized threat vectors ready for CISA audits, and export complete reports formatted in Markdown.
Set the vector parameters (e.g. AV: Network, AC: Low, PR: None, etc.).
View the final score from 0.0 to 10.0 with dynamic threat levels.
Copy the generated vector string or download the report in Markdown.
CVSS v4.0 provides greater granularity for ciberphysical systems and security metrics, and reorganizes temporal variables into a new threat metric group.
Low: 0.1-3.9 | Medium: 4.0-6.9 | High: 7.0-8.9 | Critical: 9.0-10.0. A score of 0.0 indicates no security impact.
It is a structured string compiling all metric choices (e.g. CVSS:4.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H) for easy sharing among analysts.