OVAL Repository Open source
A Community-Developed Language for Determining Vulnerability and Configuration Issues on Computer Systems
Introduction
OVAL Repository is part of OVAL — Open Vulnerability and Assessment Language.
International in scope and free for public use, OVAL is an information security community effort to standardize how to assess and report upon the machine state of computer systems. OVAL includes a language to encode system details, and an assortment of content repositories held throughout the community.
The OVAL Repository contains all community-developed OVAL Vulnerability, Compliance, Inventory, and Patch Definitions for supported operating systems.
Tools and services that use OVAL for the three steps of system assessment — representing system information, expressing specific machine states, and reporting the results of an assessment — provide enterprises with accurate, consistent, and actionable information so they may improve their security.
*** This MITRE OVAL website is in "Archive" status ***
OVAL has transitioned to the Naval Information Warfare Center (NIWC) Atlantic: https://github.com/OVAL-Community/OVAL
OVAL contentVulnerability definitionsCompliance definitionsInventory definitionsPatch definitionsSecurity assessmentSCAPConfiguration management
Screenshots

Details
Type Open-source software
Last verified 2026-07-30
Ad slot 300 × 250 Ad
About the data
Stars / commit times sync automatically from the GitHub API; pricing and features are human-verified.