MITRE CVE Program Marks 25th Anniversary, Accumulating 240,000 Records by 2024


The Common Vulnerabilities and Exposures (CVE®) Program celebrates its 25th anniversary, marking a remarkable journey from its inception in 1999 to becoming a cornerstone of global cybersecurity vulnerability management.

Starting with just 321 records in 1999, the program has expanded dramatically to include over 240,000 CVE Records as of October 2024.

SIEM as a Service

The program now boasts more than 400 CVE Numbering Authorities (CNAs) across 40 countries, demonstrating its widespread global adoption.

National Cybersecurity Awareness Month Cyber Challenges – Test your Skills Now

Kent Landfield and Lisa Olson, speaking for the CVE Board, acknowledged the collective efforts of hundreds of organizations and thousands of individuals who contributed to the program’s success.

Sandra Radesky, CISA associate director of vulnerability management, emphasized CISA’s commitment to working with international stakeholders to reduce cybersecurity risks.

CVE Program Evolution

The CVE Program has evolved from its initial conception, presented in a groundbreaking white paper, to become an essential resource for cybersecurity professionals worldwide. It serves as the backbone for:

  • National vulnerability databases
  • Cybersecurity tool vendors
  • Incident response operations
  • Research initiatives
  • Policy development

The program is actively pursuing several strategic priorities:

  • Expanding program adoption in underrepresented industry sectors
  • Strengthening connections with downstream consumers
  • Enhancing CVE Record quality through data enrichment

The CVE Program is sponsored by the U.S. Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency.

The Homeland Security Systems Engineering and Development Institute manages the program that MITRE operates.

This structure ensures a coordinated approach to vulnerability management while maintaining the program’s mission to identify, define, and catalog publicly disclosed cybersecurity vulnerabilities.

Free Webinar on How to Protect Small Businesses Against Advanced Cyberthreats -> Watch Here



Source link