Skip to content
The Nexus
SECURITYApr 15 · 20:17 UTCCYBERSCOOPMatt Kapko

NIST narrows scope of CVE analysis to keep up with rising tide of vulnerabilities

NIST has narrowed its focus for analyzing CVEs to prioritize those in CISA's catalog, federal government software, and critical software under Executive Order 14028 due to an overwhelming increase in vulnerabilities. The change aims to stabilize the NVD program amid backlogs and funding challenges, shifting away from automatically enriching non-priority CVEs.

Nexus surfaces and summarizes. The full story lives at the source.

Mentioned
Spot something wrong with this article?Report a problem →
Forward this