# CVSS Score Stats Examples

Worked CVSS Score Stats examples: how many CVEs have each CVSS score, for the whole database or for one vendor, product or version.

Source: https://docs.deepinfo.com/reference/vulnerability/cvss-score-stats/examples/

Last updated: 2026-09-24

---
`GET https://api.deepinfo.com/v1/explore/vulnerability-insight/vulnerability-stats-by-cvss-scores` · endpoint: [CVSS Score Stats](/reference/vulnerability/cvss-score-stats/)

Worked examples for CVSS Score Stats: the number of CVEs per CVSS base score (`cve_count_by_score`) and their total (`cve_count`).

Without parameters the counts cover the whole database. `vendor`, `product`, `version` and `version__startswith` narrow them to the CVEs that affect a product, with the CPE names Deepinfo uses (`enrichment.cpe.vendor`, `enrichment.cpe.product`); the response repeats the values it used.

Each example links to its own page with the request and the response.

| Example | Param | Value |
|---|---|---|
| [Every CVE by CVSS Score](/reference/vulnerability/cvss-score-stats/examples/default/) |  |  |
| [Microsoft CVEs by CVSS Score](/reference/vulnerability/cvss-score-stats/examples/vendor-microsoft/) | `vendor` | `microsoft` |
| [Apache Log4j CVEs by CVSS Score](/reference/vulnerability/cvss-score-stats/examples/vendor-product/) | `vendor`<br>`product` | `apache`<br>`log4j` |
| [Apache Log4j 2.14.1 by CVSS Score](/reference/vulnerability/cvss-score-stats/examples/vendor-product-version/) | `vendor`<br>`product`<br>`version` | `apache`<br>`log4j`<br>`2.14.1` |
| [Apache Log4j 2.x by CVSS Score](/reference/vulnerability/cvss-score-stats/examples/version-startswith/) | `vendor`<br>`product`<br>`version__startswith` | `apache`<br>`log4j`<br>`2.` |
