# cve data

Published articles for cve data.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## The State of Trusted Open Source: June 2026

DevFeed: [The State of Trusted Open Source: June 2026](<https://devfeed.tech/articles/the-state-of-trusted-open-source-june-2026-13271.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/the-state-of-trusted-open-source-june-2026>)

Published: 2026-06-30T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [Open Source](<https://devfeed.tech/topics/open-source.md>), [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [vulnerability](<https://devfeed.tech/topics/vulnerability.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [Security](<https://devfeed.tech/topics/security.md>)

Tags: [2026](<https://devfeed.tech/tags/2026.md>), [ai](<https://devfeed.tech/tags/ai.md>), [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-containers](<https://devfeed.tech/tags/chainguard-containers.md>), [chainguard-libraries](<https://devfeed.tech/tags/chainguard-libraries.md>), [cve](<https://devfeed.tech/tags/cve.md>), [cve-data](<https://devfeed.tech/tags/cve-data.md>), [cves](<https://devfeed.tech/tags/cves.md>), [data](<https://devfeed.tech/tags/data.md>), [dependency](<https://devfeed.tech/tags/dependency.md>), [java](<https://devfeed.tech/tags/java.md>), [javascript](<https://devfeed.tech/tags/javascript.md>), [nginx](<https://devfeed.tech/tags/nginx.md>), [node](<https://devfeed.tech/tags/node.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [python](<https://devfeed.tech/tags/python.md>), [report](<https://devfeed.tech/tags/report.md>), [security](<https://devfeed.tech/tags/security.md>), [software](<https://devfeed.tech/tags/software.md>), [software-supply-chain](<https://devfeed.tech/tags/software-supply-chain.md>), [software-supply-chain-security](<https://devfeed.tech/tags/software-supply-chain-security.md>), [state-of-trusted-open-source](<https://devfeed.tech/tags/state-of-trusted-open-source.md>), [trends](<https://devfeed.tech/tags/trends.md>), [vulnerability](<https://devfeed.tech/tags/vulnerability.md>)

### AI overview

Chainguard's June 2026 report analyzes vulnerability data from more than 2,400 container image projects and 18,016 vulnerability instances observed from March through May 2026. It reports 886 distinct CVEs, with 63.1% of observed instances classified as high severity, and examines how AI-assisted development and security research are affecting software supply-chain risk.

### Source excerpt

AI is accelerating vulnerability discovery. Explore the latest trusted open source trends, dependency risks, and CVE insights from Chainguard's report.

## The State of Trusted Open Source: December 2025

DevFeed: [The State of Trusted Open Source: December 2025](<https://devfeed.tech/articles/the-state-of-trusted-open-source-december-2025-13270.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/the-state-of-trusted-open-source-december-2025>)

Published: 2025-12-18T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [Open Source](<https://devfeed.tech/topics/open-source.md>), [Containers](<https://devfeed.tech/topics/containers.md>), [chainguard containers](<https://devfeed.tech/topics/chainguard-containers.md>), [Security](<https://devfeed.tech/topics/security.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [open-source-security](<https://devfeed.tech/topics/open-source-security.md>)

Tags: [2025](<https://devfeed.tech/tags/2025.md>), [ai](<https://devfeed.tech/tags/ai.md>), [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-containers](<https://devfeed.tech/tags/chainguard-containers.md>), [chainguard-cves](<https://devfeed.tech/tags/chainguard-cves.md>), [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [chainguard-report](<https://devfeed.tech/tags/chainguard-report.md>), [containers](<https://devfeed.tech/tags/containers.md>), [cve-data](<https://devfeed.tech/tags/cve-data.md>), [open-source-software](<https://devfeed.tech/tags/open-source-software.md>), [report](<https://devfeed.tech/tags/report.md>), [security](<https://devfeed.tech/tags/security.md>), [state-of-trusted-open-source](<https://devfeed.tech/tags/state-of-trusted-open-source.md>), [trends](<https://devfeed.tech/tags/trends.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

Chainguard's December 2025 State of Trusted Open Source report examines open source usage, CVE data, vulnerability remediation, and compliance trends across its customer base and container image catalog. It highlights Python's role in AI workloads, the prevalence of longtail images in production, the concentration of remediated vulnerabilities outside the top 20 projects, FIPS image usage, and remediation of Critical CVEs in under 20 hours on average.

### Source excerpt

Chainguard's State of Trusted Open Source for December 2025 dives into usage trends for Chainguard Containers, CVE data, and why remediation speed matters.

## CNAScorecard.org Measures CVE Data Quality and Completeness

DevFeed: [CNAScorecard.org Measures CVE Data Quality and Completeness](<https://devfeed.tech/articles/a-new-era-of-transparency-for-cve-data-quality-27474.md>)

Original publisher: [Read original article](<https://jerrygamblin.com/2025/08/14/a-new-era-of-transparency-for-cve-data-quality/>)

Author: jgamblin

Published: 2025-08-14T00:43:12Z

Content type: opinion

Language: en

Sources: [Jerry Gamblin](<https://devfeed.tech/sources/jerry-gamblin.md>)

Topics: [Data Quality](<https://devfeed.tech/topics/data-quality.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [NVD](<https://devfeed.tech/topics/nvd.md>)

Tags: [alert-fatigue](<https://devfeed.tech/tags/alert-fatigue.md>), [cve](<https://devfeed.tech/tags/cve.md>), [cve-data](<https://devfeed.tech/tags/cve-data.md>), [data-quality](<https://devfeed.tech/tags/data-quality.md>), [nvd](<https://devfeed.tech/tags/nvd.md>), [uncategorized](<https://devfeed.tech/tags/uncategorized.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

The article introduces CNAScorecard.org, a public scorecard intended to measure the quality and completeness of CVE data supplied by CVE Numbering Authorities. It describes missing or incomplete weakness, product, severity, and fix information as a practical vulnerability-management problem, and connects the effort to the NVD backlog.

### Source excerpt

I'm incredibly excited to finally share something I've been pouring my heart into at RogoLabs. For those of you who caught my talk at BSidesLV, you got a sneak peek, but today it's official: CNAScorecard.org is live! For years, the CVE program has been our shared language for identifying vulnerabilities. But lately, we've all felt ... Read more

## Chainguard CVE Visualizations: Now Generally Available

DevFeed: [Chainguard CVE Visualizations: Now Generally Available](<https://devfeed.tech/articles/chainguard-cve-visualizations-now-generally-available-12941.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/chainguard-cve-visualizations-now-generally-available>)

Published: 2025-02-05T00:00:00Z

Content type: release

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [chainguard](<https://devfeed.tech/topics/chainguard.md>), [chainguard images](<https://devfeed.tech/topics/chainguard-images.md>), [container images](<https://devfeed.tech/topics/container-images.md>), [Security](<https://devfeed.tech/topics/security.md>), [data](<https://devfeed.tech/topics/data.md>)

Tags: [announce](<https://devfeed.tech/tags/announce.md>), [availability](<https://devfeed.tech/tags/availability.md>), [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-console](<https://devfeed.tech/tags/chainguard-console.md>), [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [container-images](<https://devfeed.tech/tags/container-images.md>), [cve-data](<https://devfeed.tech/tags/cve-data.md>), [cve-management](<https://devfeed.tech/tags/cve-management.md>), [cve-visualizations](<https://devfeed.tech/tags/cve-visualizations.md>), [cves](<https://devfeed.tech/tags/cves.md>), [release](<https://devfeed.tech/tags/release.md>), [reporting](<https://devfeed.tech/tags/reporting.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

Chainguard announces the general availability of CVE Visualizations in the Chainguard Console. The feature helps users track remediated CVEs, compare CVE accumulation between Chainguard Images and open source alternatives, and evaluate the security and economic impact of minimal container images.

### Source excerpt

Chainguard CVE Visualizations, now generally available, is a capability that allows users to compare CVE numbers in both Chainguard Containers and upstream.

## 2024 CVE Data Review

DevFeed: [2024 CVE Data Review](<https://devfeed.tech/articles/2024-cve-data-review-27472.md>)

Original publisher: [Read original article](<https://jerrygamblin.com/2025/01/05/2024-cve-data-review/>)

Author: jgamblin

Published: 2025-01-05T00:04:57Z

Content type: article

Language: en

Sources: [Jerry Gamblin](<https://devfeed.tech/sources/jerry-gamblin.md>)

Topics: [Statistics](<https://devfeed.tech/topics/statistics.md>), [data](<https://devfeed.tech/topics/data.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [vulnerability](<https://devfeed.tech/topics/vulnerability.md>), [Protocol (disambiguation)](<https://devfeed.tech/topics/protocol.md>), [Cisco](<https://devfeed.tech/topics/cisco.md>), [iOS](<https://devfeed.tech/topics/ios.md>), [GitHub](<https://devfeed.tech/topics/github.md>), [Kernel](<https://devfeed.tech/topics/kernel.md>), [WordPress](<https://devfeed.tech/topics/wordpress.md>), [WordPress Plugins](<https://devfeed.tech/topics/wordpress-plugins.md>)

Tags: [cisco](<https://devfeed.tech/tags/cisco.md>), [cve](<https://devfeed.tech/tags/cve.md>), [cve-data](<https://devfeed.tech/tags/cve-data.md>), [github](<https://devfeed.tech/tags/github.md>), [kernel](<https://devfeed.tech/tags/kernel.md>), [numbers](<https://devfeed.tech/tags/numbers.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [packages](<https://devfeed.tech/tags/packages.md>), [statistics](<https://devfeed.tech/tags/statistics.md>), [uncategorized](<https://devfeed.tech/tags/uncategorized.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>), [vulnerability](<https://devfeed.tech/tags/vulnerability.md>), [wordpress](<https://devfeed.tech/tags/wordpress.md>), [wordpress-plugins](<https://devfeed.tech/tags/wordpress-plugins.md>)

### AI overview

This review examines 2024 CVE statistics, reporting 40,009 published CVEs, a 38.83% increase from 2023. It covers publication patterns, CVSS severity scores, CPE records, and CVE Numbering Authorities.

### Source excerpt

2024 brought unprecedented growth in CVE data, so I figured it would be appropriate to start the new year by exploring these statistics and highlighting some of the more intriguing data points. CVEs By The Numbers We ended 2024 with 40,009 published CVEs, up over 38% from the 28,818 CVEs published in 2023. CVEs By Month Month ... Read more