The European Union Agency for Cybersecurity (ENISA) has developed the European Vulnerability Database (EUVD) to assist European organizations with cyber resilience.
EUVD was a requirement of the NIS2 Directive and will be maintained by ENISA going forward. The database provides aggregated, reliable, and actionable information such as mitigation measures and exploitation status on cybersecurity vulnerabilities affecting information and communication technology (ICT) products and services.
Henna Virkkunen, European Commission Executive Vice-President for Tech Sovereignty, Security and Democracy, said: “The EU Vulnerability Database is a major step towards reinforcing Europe’s security and resilience. By bringing together vulnerability information relevant to the EU market, we are raising cybersecurity standards, enabling both private and public sector stakeholders to better protect our shared digital spaces with greater efficiency and autonomy.”
The objective of the EUVD is to offer an openly accessible, trusted, transparent, and broader source of vulnerabilities information and to improve situational awareness while limiting exposure to threats.
The aggregated information of the EUVD database is displayed through dashboards. The EUVD offers three dashboard views: for critical vulnerabilities, for exploited ones, and for EU coordinated ones. The latter lists the vulnerabilities coordinated by European CSIRTs and includes the members of the EU CSIRTs network.






