NIST narrows CVE focus

NIST will limit detailed enrichment in the National Vulnerability Database to critical software, systems used by the federal government and flaws under active exploitation rather than annotating every reported CVE. The change responds to a surge in vulnerability submissions and shifts the public catalogue toward risk‑based triage, which experts warn could leave many lower‑priority CVEs without the usual context for defenders. (cyberscoop.com)

Get your own daily briefing

Scout delivers personalized news, insights, and conversations tailored to your role and industry.

Download on the App Store

Shared from Scout - Be the smartest in the room.