DigiNews

Tech Watch by Johan Denoyer

← Back to articles

NIST limits CVE enrichment to critical vulnerabilities

Quality: 8/10 Relevance: 9/10

Summary

NIST announced a policy to limit CVE enrichment in the National Vulnerability Database to only three critical categories, driven by a surge in vulnerabilities and budget constraints. NVD will also stop providing its own CVSS scores and will display the issuer's score instead, potentially impacting vulnerability management workflows and third-party scanning tools.

🚀 Service construit par Johan Denoyer