Close Menu
Technology Mag

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Why China Builds Faster Than the Rest of the World

    September 1, 2025

    Is AI the end of software engineering or the next step in its evolution?

    September 1, 2025

    The Mysterious Shortwave Radio Station Stoking US-Russia Nuclear Fears

    September 1, 2025
    Facebook X (Twitter) Instagram
    Subscribe
    Technology Mag
    Facebook X (Twitter) Instagram YouTube
    • Home
    • News
    • Business
    • Games
    • Gear
    • Reviews
    • Science
    • Security
    • Trending
    • Press Release
    Technology Mag
    Home » The CVE program for tracking security flaws is about to lose federal funding
    News

    The CVE program for tracking security flaws is about to lose federal funding

    News RoomBy News RoomApril 15, 20252 Mins Read
    Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Email

    Funding is about to run out for the Common Vulnerabilities and Exposures (CVE) program – a system used by major companies like Microsoft, Google, Apple, Intel, and AMD to identify and track publicly disclosed cybersecurity vulnerabilities. The program helps engineers identify how bad an exploit is and how to prioritize applying patches or other mitigations.

    MITRE, the federally funded organization behind the program, confirmed to The Verge that its contract to “develop, operate, and modernize” CVE will expire on April 16th.

    First launched in 1999, the CVE program houses a database where participating organizations can assign IDs to known cybersecurity vulnerabilities. The IDs consist of the letters “CVE” followed by a year and a number, such as CVE-2022-27254, allowing security professionals to monitor details about the vulnerabilities that may impact the devices we use every day and systems that contain information critical to practically everything we do.

    Lukasz Olejnik, a security and privacy researcher, said in a post on X that a lack of support for CVE could “cripple” cybersecurity systems around the globe. “The consequence will be a breakdown in coordination between vendors, analysts, and defense systems — no one will be certain they are referring to the same vulnerability,” Olejnik wrote. “Total chaos, and a sudden weakening of cybersecurity across the board.”

    “The government continues to make considerable efforts to support MITRE’s role in the program and MITRE remains committed to CVE as a global resource,” Yosry Barsoum, MITRE’s vice president and director at the Center for Securing the Homeland, said in an emailed statement to The Verge. Barsoum also said the change will affect the Common Weakness Enumeration program, which catalogs hardware and software weaknesses.

    The news was first spotted in a leaked letter to MITRE board members posted on X and Bluesky. MITRE receives funding from the US Department of Homeland Security (DHS) and the Infrastructure Security Agency (CISA) to “operate and evolve the CVE Program as an independent, objective third party,” according to a video about the program.

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp Reddit Email
    Previous ArticleMeta’s antitrust trial slide redactions aren’t actually hiding anything
    Next Article The Most Dangerous Hackers You’ve Never Heard Of

    Related Posts

    Is AI the end of software engineering or the next step in its evolution?

    September 1, 2025

    Chatbots can be manipulated through flattery and peer pressure

    August 31, 2025

    The Verge’s favorite gifts for book lovers

    August 31, 2025

    Meta is struggling to rein in its AI chatbots

    August 31, 2025

    AI agents are science fiction not yet ready for primetime

    August 31, 2025

    Verizon’s ‘software issue’ has disconnected many wireless customers across the US

    August 30, 2025
    Our Picks

    Is AI the end of software engineering or the next step in its evolution?

    September 1, 2025

    The Mysterious Shortwave Radio Station Stoking US-Russia Nuclear Fears

    September 1, 2025

    Chatbots can be manipulated through flattery and peer pressure

    August 31, 2025

    The Verge’s favorite gifts for book lovers

    August 31, 2025
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo
    Don't Miss
    News

    Meta is struggling to rein in its AI chatbots

    By News RoomAugust 31, 2025

    Meta is changing some of the rules governing its chatbots two weeks after a Reuters…

    AI agents are science fiction not yet ready for primetime

    August 31, 2025

    How to See the Total Lunar Eclipse and Blood Moon on September 7

    August 31, 2025

    Verizon’s ‘software issue’ has disconnected many wireless customers across the US

    August 30, 2025
    Facebook X (Twitter) Instagram Pinterest
    • Privacy Policy
    • Terms of use
    • Advertise
    • Contact
    © 2025 Technology Mag. All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.