CVSS Calculator

Free CVSS 4.0 and CVSS 3.1 calculator. Pick metrics, get the score and severity instantly, copy the vector string, and share a permalink.

Score
Base score
5.3
Medium

CVE-2026-86217

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Impact
1.4
Exploitability
3.9

How it works

Base metrics describe the vulnerability itself and give the score that NVD and vendors publish. Threat and Environmental metrics adjust it for exploit maturity and for one deployment. Supplemental metrics add context and do not change the number. Every CVE page in the Strix CVE Database opens its NVD vector here.

Worked examples

VulnerabilityWhy it scores this way3.14.0
XZ Utils backdoorCVE-2024-3094Supply-chain backdoor in liblzma. It gives an unauthenticated remote attacker code execution inside sshd, so the impact reaches beyond the library.10.010.0
regreSSHionCVE-2024-6387Signal handler race condition in OpenSSH. Remote root without credentials, but the attacker must win a race that takes hours, so Attack Complexity is High.8.19.2
Dirty PipeCVE-2022-0847Linux kernel page cache bug. Any local user can overwrite read-only files and become root, but the attacker needs a shell first.7.88.5
Reflected XSSScript injected through a URL parameter and executed in the victim's browser. The victim must open the link, and the impact lands in the browser, not the server.6.15.1

Frequently asked questions

Start testing in minutes

Connect your GitHub repos and domains, and get fully set up in a few clicks.