NIST admits defeat on NVD backlog, will enrich only highest-risk CVEs going forward

2026-04-16T20:51:50Zdd8fe84c0909fbb5bd4d0ac3995b67c01b6cfd948ec90d5725150ad9aae8f362
AI-safetyAndroidAnthropicCVE-2026-39808CVE-2026-39813CVE-backlogClaude Opus 4.7FortiSandboxFortinetGoogle PlayNISTNVDTailsadvisorypatchingprivacyvulnerability-management

What happened

Multiple security news items: NIST will shift the National Vulnerability Database (NVD) to a risk-based enrichment model, prioritizing detailed enrichment only for the highest-risk CVE entries after a 263% surge in submissions from 2020–2025 — a change that will leave many CVEs with minimal contextual data. Anthropic released Claude Opus 4.7 with built-in automated cybersecurity safeguards and improvements for long-running agentic workflows, available across major cloud platforms and APIs. Fortinet patched two critical FortiSandbox vulnerabilities (CVE-2026-39813, CVE-2026-39808) that allowuna

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
helpnetsecurity
Record identifier
dd8fe84c0909fbb5bd4d0ac3995b67c01b6cfd948ec90d5725150ad9aae8f362
Enrichment time
2026-04-16T20:51:50Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · NIST admits defeat on NVD backlog, will enrich only highest-risk CVEs going forward · Baitaphish