Ingest the source of record
Track official CISA KEV additions and their required actions as the catalog changes.
CISA KEV EXPOSURE MONITORING
CISA KEV tells you which vulnerabilities are known to be exploited. PatchWindow adds the missing portfolio question: where has related technology been observed, and which properties should an authorized team confirm first?
THE ACCESS GAP
The CISA catalog is an excellent source of record, but it does not know your domains, brands, or technology history. A new entry still leaves teams collecting inventory, resolving product names, and deciding who needs to investigate.
PatchWindow automates that first-pass join. It preserves CISA facts separately from BuiltWith observations, then ranks potential matches without presenting passive evidence as proof of vulnerability.
WHAT YOU GET
Track official CISA KEV additions and their required actions as the catalog changes.
Connect vendor and product aliases to technologies observed across public internet properties.
Rank potential matches with timestamps, rationale, and the exact uncertainty an authorized owner must resolve.
WHY TEAMS PAY
CISA publishes the threat signal at no charge. PatchWindow is valuable because it repeatedly connects that changing signal to a changing public estate and makes the result operational.
Compare plans →Run the inventory-to-KEV match every day instead of rebuilding spreadsheets after each urgent advisory.
Use first- and last-seen dates to distinguish current-looking observations from technology that may already have been removed.
Put exploited status and match evidence ahead of a long generic list of possible CVEs.
Keep results in a portfolio dashboard and move them into other workflows through API access.
HONEST BY DESIGN
Public technology evidence can identify where investigation is likely to pay off. It cannot reliably prove the affected version, configuration, reachability, or remediation state.
Every PatchWindow result keeps that boundary visible and tells the asset owner what must be confirmed through authorized testing.
COMMON QUESTIONS
No. PatchWindow uses the public CISA KEV catalog as an official source of record and clearly separates those source facts from its own matching output.
No. It means related technology was observed and should be checked. Version, configuration, reachability, and remediation status still require authorized confirmation.
The paid product maintains the public-estate inventory, performs recurring product matching, preserves evidence, prioritizes results, and delivers alerts and portfolio workflow.
Yes. The public assessment provides a free passive preview for one domain before you choose portfolio monitoring.
FREE DOMAIN PREVIEW
No agent, credentials, or active scan. Upgrade when you need continuous portfolio coverage.