Heat score
1Topic analysis
NIST limits CVE enrichment to high-impact vulnerabilities
The US National Institute of Standards and Technology will now only enrich CVEs for vulnerabilities deemed critical to government and private sector security, including major software like operating systems and browsers. This policy change, effective April 15, 2026, addresses NIST's inability to keep pace with the growing volume of vulnerabilities due to budget constraints and will also end NIST's practice of providing its own CVSS severity scores.
Sources
1Platforms
1Relations
13- First seen
- Apr 17, 2026, 11:09 PM
- Last updated
- Apr 18, 2026, 8:15 AM
Why this topic matters
NIST limits CVE enrichment to high-impact vulnerabilities is currently shaped by signals from 1 source platforms. This page organizes AI analysis summaries, 1 timeline events, and 13 relationship edges so search engines and AI systems can understand the topic's factual basis and propagation arc.
Keywords
6 tagsSource evidence
1 evidence itemsNIST gives up enriching most CVEs
News · 1Timeline
NIST gives up enriching most CVEs
Apr 17, 2026, 11:09 PM