logo

NIST to Implement 'Deferred' Status to Dated Vulnerabilities

ID: 34e18061-18f1-5ba3-b951-ce8635873ad7

STIX ID: report--34e18061-18f1-5ba3-b951-ce8635873ad7

Feed Name: Dark Reading

Date Published: 2025-04-07

Date Updated: 2026-04-21

Author: Kristina Beek, Associate Editor, Dark Reading

...
...

NIST announced that all CVEs published before Jan. 1, 2018 will be marked as “deferred” in the National Vulnerability Database to prioritize enrichment of newer vulnerabilities amid a growing backlog; this administrative change does not lower the severity of older issues, and NIST will continue to accept and review metadata update requests as time and resources permit.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.