Verfahren, bei dem Sicherheitslücken in Software oder Systemen koordiniert offengelegt werden, um Nutzende eines IT-Produkts oder Dienstleistung zu informieren und zu schützen.
Process that ensures that vulnerabilities get disclosed to the public once the vendor has been able to develop a fix, a patch, or has found a different solution.
NCSC, Coordinated Vulnerability Disclosure (CVD) ([Internet, 2025-04-24](https://www.ncsc.admin.ch/ncsc/en/home/infos-fuer/infos-it-spezialisten/themen/schwachstelle-melden.html))
EXP: vulnerabilities finders work together and share information with the relevant stakeholders such as vendors and ICT infrastructure owners
after ENISA, Coordinated Vulnerability Disclosure policies in the EU ([Internet, 2022-04-13](https://www.enisa.europa.eu/news/enisa-news/coordinated-vulnerability-disclosure-policies-in-the-eu))
nach Leitlinie des BSI zum Coordinated Vulnerability Disclosure (CVD)-Prozess ([Internet, 2022-12-01](https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/CVD/CVD-Leitlinie.pdf?__blob=publicationFile&v=4))
after ENISA, Coordinated Vulnerability Disclosure policies in the EU ([Internet, 2022-04-13](https://www.enisa.europa.eu/news/enisa-news/coordinated-vulnerability-disclosure-policies-in-the-eu))