Command Palette
Search for a command to run...

NIST Shifts CVE Priorities After Surge in Submissions

techcybersecurity 1 posts · 1 accounts

The National Institute of Standards and Technology is changing how it prioritizes software vulnerabilities in the National Vulnerability Database after a surge in CVE submissions. The agency is moving to a triage model that gives priority to vulnerabilities already being exploited in the wild and to flaws affecting critical software.

The shift marks a change for security teams that had relied on the database as a more comprehensive source of CVE details. NIST is now focusing on known exploited vulnerabilities first rather than trying to keep pace with every reported CVE.

From the sources (1 posts)

@bugcrowd

NIST is changing how they prioritize CVEs in the National Vulnerability Database after a huge surge in submissions. They are moving to a model that prioritizes vulnerabilities already being exploited in the wild or those affecting critical

Preview built on a synthetic news corpus (16 weeks, Apr–Jul 2026). Impact calls are model reads, not price data.

About Archive