NIST narrows vulnerability scoring to high-risk issues as submissions surge

TL;DR Summary
NIST will stop enriching and rating severities for low-priority vulnerabilities in the NVD due to a 263% rise in submissions; only CVEs meeting KEV criteria, affecting U.S. federal software, or involving critical software will receive added details, while all CVEs stay in the database and others are labeled Not Scheduled; enrichment requests remain possible via [email protected].
- NIST to stop rating non-priority flaws due to volume increase BleepingComputer
- NIST Limits CVE Enrichment After 263% Surge in Vulnerability Submissions The Hacker News
- How NIST's Cutback of CVE Handling Impacts Cyber Teams Dark Reading
- NIST Prioritizes NVD Enrichment for CVEs in CISA KEV, Critical Software SecurityWeek
- NIST Drops NVD Enrichment for Pre-March 2026 Vulnerabilities Infosecurity Magazine
Reading Insights
Total Reads
0
Unique Readers
4
Time Saved
4 min
vs 5 min read
Condensed
93%
806 → 56 words
Want the full story? Read the original article
Read on BleepingComputer