# Which CVE scanning tool choose?

**URL:** <https://forums.suse.com/t/which-cve-scanning-tool-choose/45219>\
**Category:** SUSE Linux Enterprise Server\
**Created:** [February 24, 2025, 11:08am UTC](https://forums.suse.com/t/which-cve-scanning-tool-choose/45219 "2025-02-24T11:08:53Z")\
**Posts on this page:** 1\
**Page:** 1

<div class="post-metadata">

**Author:** ![Frederic](https://avatars.discourse-cdn.com/v4/letter/f/4491bb/32.png) [@Frederic](https://forums.suse.com/u/Frederic)\
**Post date:** [February 24, 2025, 11:08am UTC](https://forums.suse.com/t/which-cve-scanning-tool-choose/45219/1 "2025-02-24T11:08:53Z")

</div>

Hello

I’m trying to find a CVE scanning tool for a SLES solution but the only one that I found were based on NVD and not on SUSE’s databases.  
For example, I made a Wazuh configuration: the scan is done but I see CVE detected in kernel that are already delivered.  
As there is some delay between NVD and the real state of CVE, I would like to find something more related to SUSE.

Is this kind of tool exist ? the SuSE Multi-linux manager can do that ? (without updating the target)

Thanks
