The Common Vulnerabilities and Exposures (CVE) program is the global standard for identifying and naming software vulnerabilities. Established in 1999, CVE assigns unique IDs to known cybersecurity flaws through a network of trusted organizations known as CVE Numbering Authorities (CNAs). CVE data serves as the backbone for global cyber defense collaboration. Sustained investment, transparency, and shared responsibility are essential to ensuring the continuity of this critical program and preventing fragmentation of the global vulnerability landscape.

Read Next

European Commission Publishes Final Cyber Resilience Act Implementation Guidance, Addresses Concerns Raised by Cybersecurity Coalition

The Cybersecurity Coalition welcomes final guidance on the Cyber Resilience Act that provides covered entities with clearer guidance on the landmark product security regulation.

Building Texas Cyber Resilience: From Awareness to Action

Texas is building a new model for cyber resilience. A recent convening of state, local, academic, and private sector leaders identified practical steps to strengthen coordination, expand shared capabilities, and improve cybersecurity readiness.

An Important Win for Vulnerability Disclosure in the Post-Quantum Cryptography Executive Order

President Trump's recent Executive Order highlights the need for federal contractors to have access to clear channels to report vulnerabilities.