00933nas a2200085 4500000000100000008004100001245006000042856011000102520063500212 2022 d00aCoordinated vulnerability disclosure policies in the EU uhttps://op.europa.eu/en/publication-detail/-/publication/40094872-6b02-11ed-b14f-01aa75ed71a1/language-en3 aThis ENISA study primarily aims to draw a comprehensive overview of the background and current state of play of coordinated vulnerability disclosure (CVD) practices across the EU Member States and outside the EU. First, the study presents a summary of the existing or planned national CVD policy initiatives along with good practices, challenges and recommendations on policy attempts. Second, the study offers an analysis of national, regional and global vulnerability databases, and presents the different practices on vulnerability and registry management along with the formats, metrics and procedures used in these databases.