NIST Drops NVD Enrichment for Pre-March 2026 Vulnerabilities (infosecurity-magazine.com)
0xBASE INTEL BRIEF
- NIST prioritises enrichment for new and exploited CVEs only.
- Retroactive enrichment for pre-March 2026 entries is discontinued.
- Record CVE growth forces NIST to shift resources.
"The U.S. National Institute of Standards and Technology (NIST) will no longer enrich older vulnerabilities in its National Vulnerability Database (NVD) to focus on new and actively exploited flaws. This change, driven by record CVE growth, means entries before March 2026 will not receive additional metadata. Organizations must rely on alternative sources for older vulnerabilities."
no comments yet.