---
title: vulnerabilityInputToCVEIds query | Wartiva GraphQL API
description: Returns the ids of the CVEs that affect a product described in free text, such as "OpenSSL 3.0.1 on Ubuntu 22.04".
url: https://wartiva.com/api-docs/queries/vulnerability-input-to-cve-ids.html
updated: 2026-10-07
---

Vulnerabilities · GraphQL query

# `vulnerabilityInputToCVEIds` query

Returns the ids of the CVEs that affect a product described in free text, such as "OpenSSL 3.0.1 on Ubuntu 22.04". It combines [vulnerabilityInputToCPE](https://wartiva.com/api-docs/queries/vulnerability-input-to-cpe.html), which uses AI to derive CPE names, with [vulnerabilityCPEtoCVEIds](https://wartiva.com/api-docs/queries/vulnerability-cpe-to-cve-ids.html). An empty list means either no matching CVEs or that the description could not be turned into CPE names.

## Response

Returns a [`CVEIdsPayload!`](https://wartiva.com/api-docs/types/cve-ids-payload.html)

## Arguments

| Name | Description |
|---|---|
| `orgId` - [`OrganizationId!`](https://wartiva.com/api-docs/types/organization-id.html) | The id of the Organization. |
| `input` - [`String!`](https://wartiva.com/api-docs/types/string.html) | Input. |
| `aiModel` - [`AiModelInput`](https://wartiva.com/api-docs/types/ai-model-input.html) | Optionally specify AI model to utilize. |

## Example

### Query

```graphql
query vulnerabilityInputToCVEIds(
  $orgId: OrganizationId!,
  $input: String!,
  $aiModel: AiModelInput
) {
  vulnerabilityInputToCVEIds(
    orgId: $orgId,
    input: $input,
    aiModel: $aiModel
  ) {
    ids
  }
}

```

### Variables

```json
{
  "orgId": "615f3b3b28284380e28a7342",
  "input": "abc123",
  "aiModel": AiModelInput
}

```

### Response

```json
{
  "data": {
    "vulnerabilityInputToCVEIds": {
      "ids": ["4"]
    }
  }
}

```

---

Wartiva is in early access. Request access: https://wartiva.com/early-access.html  
All pages: https://wartiva.com/llms.txt
