#GCVE
The **GCVE Workshop at Vulnopticon 2026** took place on 22 September in Luxembourg.

We discussed decentralized vulnerability allocation, digital sovereignty, CVD workflows, Vulnerability-Lookup, Vulniverse, AI-assisted vulnerability analysis, and the future of GCVE.

All slide decks and […]
Original post on infosec.exchange
infosec.exchange
September 23, 2026 at 5:13 AM
CVE fallout: The splintering of the standard vulnerability tracking system has begun
CVE fallout: The splintering of the standard vulnerability tracking system has begun
MITRE, EUVD, GCVE … WTF? Comment  The splintering of the global system for identifying and tracking security bugs in technology products has begun.…
dlvr.it
April 18, 2025 at 9:59 AM
🪲 CIRCL's GCVE initiative launched its decentralized publishing ecosystem today alongside Vulnerability-Lookup 4.1.0. Any CNA, CSIRT, or vendor with a disclosure policy can now publish vulnerability data without routing through a central authority.

socket.dev/blog/gcve-la...
GCVE Launches Decentralized Publishing Ecosystem for Vulnera...
The GCVE initiative operated by CIRCL has officially opened its publishing ecosystem, letting organizations issue and share vulnerability identifiers ...
socket.dev
March 12, 2026 at 3:41 AM
The idea from @bagder is so interesting that it gave me the idea to extend the "GCVE-BCP-02 - Practical Guide to Vulnerability Handling and Disclosure" with "Temporary Closure of Vulnerability Intake Windows"

#gcve #cve #vulnerabilitymanagement #vulnerability #opensource #cybersecurity

🔗 […]
Original post on infosec.exchange
infosec.exchange
June 15, 2026 at 2:46 PM
GCVE has published a description of the scope of a GCVE record. It is based on feedback, misunderstandings from articles about the GCVE initiative, and ideas from GNAs actually assigning IDs.

The document is still in draft before in a final publication. Feedback is welcome via the standard […]
Original post on infosec.exchange
infosec.exchange
May 17, 2026 at 8:29 AM
VULNARCHIVE and GNA 1988: Automated Vulnerability Identifier Allocation in a Federated GCVE Ecosystem.

One of the core ideas behind GCVE is that vulnerability identification does not need to depend on a single central authority. Independent GCVE Numbering Authorities (GNAs) can operate their […]
Original post on infosec.exchange
infosec.exchange
September 20, 2026 at 2:15 PM
Gestion des vulnérabilités par @adulau.bsky.social et C.Bonhomme du #CIRCL🇱🇺 à #UYBHYS2025, agrègent et corrèlent 27 sources 🇺🇸 🇨🇳 🇪🇺...👍🏻
Prédiction par IA de la sévérité à partir des descriptions textes 🤩
#GCVE permet à chacun de publier des vulnérabilités gcve.eu
www.vulnerability-lookup.org
November 8, 2025 at 10:49 AM
If you are curious about (nearly) everything we did the past months at the GCVE.eu initiative:

https://gcve.eu/2026/08/13/gcve-recent-activities-standards-software-and-a-growing-gna-community/

We published a recap blog post.

#gcve #cve #vulnerability […]

[Original post on infosec.exchange]
August 13, 2026 at 3:24 PM
GCVE ain’t it by the way. the goal should be to build a global federated vulnerability database free of control by any nation-state.
April 16, 2025 at 3:26 PM
Working on a first super beta implementation of @gcve BCP-11 "Community-Proposed Updates to Existing CVE Records"

To validate if the BCP-11 can be published.

#cve #gcve #vulnerability #opensource #opendata

Discussions […]

[Original post on infosec.exchange]
August 9, 2026 at 9:24 AM
@circl and by the way, we just launched 🔗 https://gcve.eu/

GCVE: Global CVE Allocation System

The Global CVE (GCVE) allocation system is a new, decentralized approach to vulnerability identification and numbering, designed to improve flexibility, scalability, and autonomy for participating […]
Original post on infosec.exchange
infosec.exchange
April 16, 2025 at 9:09 AM
"The GCVE initiative is proud to announce the public launch of db.gcve.eu , a new open and freely accessible vulnerability advisory database"
January 22, 2026 at 12:41 AM
Tired of drafting vulnerability advisories from Git patches?

We developed patch2vuln to facilitate the creation of security advisories directly from Git patches.

With a single command, patch2vuln can assist an analyst throughout the advisory creation process: analyzing the patch, drafting the […]
Original post on infosec.exchange
infosec.exchange
September 18, 2026 at 2:56 PM
🇪🇺 ENISA’s EU Vulnerability Database (EUVD) and CIRCL’s Global CVE System (GCVE) have launched, offering European IDs and decentralized numbering authorities — all while the new CVE Foundation secures long‑term program stability.

#EUVD #GCVE #CVEFoundation
April 22, 2025 at 9:10 AM
i hi ha més iniciatives, com aquesta més descentralitzada gcve.eu/about/
About
GCVE: Global CVE Allocation SystemThe Global CVE (GCVE) allocation system is a new, decentralized approach to vulnerability identification and numbering, designed to improve flexibility, scalability, ...
gcve.eu
April 21, 2025 at 1:11 PM
GCVE-BCP-02 - Practical Guide to Vulnerability Handling and Disclosure.

version 1.3 published

gcve.eu/bcp/gcve-bcp...

#cve #gcve #cvd #vulnerabilitymanagement
GCVE-BCP-02 - Practical Guide to Vulnerability Handling and Disclosure
This guide provides actionable recommendations for GCVE GNA, software developers, open source project maintainers, vendors, and organizations to manage vulnerability reports from discovery to resoluti...
gcve.eu
December 17, 2025 at 6:27 AM
Even if you're gearing up for a monster winter storm, take the time to check out today's Metacurity for the most crucial cybersecurity developments you should know, including

--Acting CISA head got grilled on mass firings at the agency, 1/4
www.metacurity.com/acting-cisa-...
Acting CISA head got grilled on mass firings at the agency
EU's CIRCL launches GCVE system, DeFi project EVM was exploited for $6m, Attackers exploit patch bypass for FortiGate flaw, Cisco fixes Unified Communications and Webex Calling RCE flaw, Mass spam wav...
www.metacurity.com
January 22, 2026 at 2:31 PM
With the extension of the CVE record format in GCVE, we added the related vulnerabilities for the "recent" telnetd. Very nifty for analyst. The edit functionality in vulnerability-lookup supports the BCP-05 extensions including relationships.

Thanks to […]

[Original post on infosec.exchange]
January 26, 2026 at 4:41 PM
The GCVE.eu initiative will take part in hackathon.lu (14–15 April, Luxembourg), alongside core developers of GCVE-related projects. See you there to build, experiment, and collaborate!

#gcve #cve #opensource #openstandard #hackathon

🔗 https://hackathon.lu

@gcve
@circl
February 20, 2026 at 10:40 AM
🛡️ cvemate.com now pulls from 18+ vulnerability intelligence sources - CVE.org, NVD, GCVE, EPSS, CISA KEV, ENISA KEV, ATT&CK, CWE, CAPEC and much more !

All linked in one graph. One query, full context.
#vulnerability #cybersecurity #infosec
CveMate
Unified vulnerability intelligence with CVE data, CVSS & EPSS scores, CISA KEV alerts, ransomware tracking, and exploit information.
cvemate.com
February 2, 2026 at 9:38 AM
We had the pleasure of presenting at FIRST.org 2025, showcasing the Vulnerability-Lookup and GCVE.eu initiatives.

Slides are now available.

#cybersecurity #vulnerability #cve #threatintel

@gcve @circl
@firstdotorg

🔗 […]
Original post on infosec.exchange
infosec.exchange
June 25, 2025 at 8:09 PM