CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Cloud

Cloud vulnerabilities: OCVDB

Cloud vulnerabilities from the Open Cloud Vulnerability Database (OCVDB), a community catalog of provider-side flaws in Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP). These are tracked as their own entity, keyed on the entry slug, and kept separate from the Common Vulnerabilities and Exposures (CVE) table. Related CVEs link into the vulnerabilities table only when the OCVDB entry names them. An empty CVE list makes no claim about whether an authority has assigned an identifier. This page carries metadata and links only. Each summary is the entry's own text, verbatim.

211 reviewed entries; 66 AI-generated drafts shown separately in this snapshot229 naming no CVE in OCVDB48 naming at least one CVE in OCVDBNo new OCVDB entries since 2025-09-17CloudSource: Open Cloud Vulnerability Database (OCVDB)

Not a Common Vulnerabilities and Exposures (CVE) list. These entries are tracked separately from the vulnerabilities table and are never mixed into it.

Cloud vulnerability records

About this data

Entries come from the Open Cloud Vulnerability Database (OCVDB), a community catalog of cloud provider vulnerabilities maintained by Wiz and contributors. They are a distinct entity from the Common Vulnerabilities and Exposures (CVE) table, so this tracker keys them on the entry slug and never mixes them into the vulnerabilities table. When an entry names CVEs, each one this tracker follows links into the vulnerabilities table. When OCVDB names none, this tracker makes no CVE assignment claim. OCVDB carries no authoritative open or closed status, so this page does not invent one: the remediation posture is inferred from the entry's own remediation guidance and is clearly labeled Tracker inference. Severity, the exploitability window, detection methods, and dates are shown only when the entry provides them, and read "Not specified" otherwise, never a fabricated value or a zero.

Cloud vulnerability data is theOpen Cloud Vulnerability Database (OCVDB), licensedCC BY 4.0, maintained by Wiz and OCVDB contributors. Individual researcher credit is shown on each entry.

Reference lists are optional and are omitted when an entry provides no references.

Glossary