Product overview
cnspec is tracked by BlackTree as an end-user software application. Its lifecycle page separates release identity, maintenance and security boundaries using the publisher's registered source.
Main capabilities
- User-facing application functions
- Local or managed application deployment
- Vendor-maintained feature and security updates
Typical use
Used by individuals or organizations for the product-specific tasks described by its publisher.
Deployment
Installed on supported endpoints or supplied through a vendor-managed service, depending on the edition.
This category-level context is generated from the registered product identity. Confirm exact product capabilities on the publisher's page ↗.
Collected lifecycle data
| Product | cnspec |
|---|
| Release | Lifecycle policy |
|---|
| Start or release | Not extracted |
|---|
| Lifecycle boundary | Continuous or not dated in the source |
|---|
| Date precision | Unknown |
|---|
Known exploited vulnerabilities
Catalogue updated 1 Oct 2026These are product-family matches in the CISA Known Exploited Vulnerabilities catalogue. Confirm the affected product version in the vendor advisory.
No CISA known-exploited entries currently match this mapped product family.
This does not mean the product has no vulnerabilities.
Package vulnerability advisories
Checked 29 Sep 2026OSV advisories are matched through the registered package URL. A package-family match does not prove that the installed release is affected. Check the affected and fixed versions before remediation.
No package advisories have been linked for this product identity.
This is not evidence that the product has no vulnerabilities.
Source evidence
PRIMARYManual
cnspec official lifecycle source
Breaking changes Copy Anchor Link | Major releases can include soft-breaking changes that may require updates to your policies, query packs, or automation. Mondoo announces these well in advance, and they don't become hard-breaking until the following major release. | Supported releases Copy Anchor Link | cnspec follows an N-1 support cycle: the current major version ( N ) and the previous one ( N-1 ) are officially supported. Both can talk to Mondoo Platform and run every published policy and query pack. With 14.0 released, 14.x and 13.x are supported, and all 12.x releases have reached end of life (EOL). | Update cnspec Copy Anchor Link | Integrations that run on Mondoo Platform, the Kubernetes operator, and the AWS Lambda-based integration automatically update to the latest version. There's no need to manually update these. | Update with cnspec update Copy Anchor Link
Publisher identity used by product-specific official-source collectors.
First collected 12 Sep 2026 · Last collected 30 Sep 2026 · Review state accepted
Open official vendor source ↗