Skip to content

standard

CVE Program

Global standard for cataloging cybersecurity vulnerabilities, assigning unique CVE IDs through CNAs and enriched by Authorized Data Publishers.

Known aliases

  • ADP
  • Authorized Data Publisher
  • CNA
  • CVE Numbering Authority

Relationships

No evidence-backed relationships are recorded.

Current stories

security3 publishers

CISA reframes the CVE program around data quality as 2026 heads for 96,000 records

Disclosure volume is climbing faster than the process around it. CISA's answer is a framework that describes what a good CVE record is and how the program should be judged on producing one.

Perspective Coverage

3 publishers
Builder
Builder 33%
Operator
Operator 50%
Investor
Investor 17%

Reality

Evidence68
Adoption
Insufficient
Hype gap+30
Incentives55
Confidence66