Federal Audit Finds NIST Wasted Funds With No Plan to Clear NVD Backlog
ID: 21d0be85-13a0-53c2-9775-599074e3d751
STIX ID: report--21d0be85-13a0-53c2-9775-599074e3d751
Feed Name: Socket Blog
A Commerce Office of Inspector General audit found NIST lacked a strategic plan for the National Vulnerability Database, missed backlog-reduction targets, duplicated enrichment work with CISA (wasting funds), delayed using CISA enrichment data, and left many CVEs—including some in the Known Exploited Vulnerabilities catalog—unenriched; OIG recommended creating a strategic and backlog-management plan, improving coordination and communications, and reducing redundant processing, and NIST concurred with the recommendations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
