AISLE Expands CVE Numbering Authority Scope Under ENISA

AISLE Expands CVE Numbering Authority Scope Under ENISA

First seen 26 Aug 2026, 15:55 UTC GlobenewswireMarkets.Businessinsiderwww.globenewswire.com 24.9

Article Content

Browse articles
ThreatCluster

On August 26, 2026, AISLE announced its expanded scope as a CVE Numbering Authority (CNA) under ENISA, covering all AISLE products and third-party software vulnerabilities. This designation allows AISLE to assign CVE IDs for vulnerabilities discovered through research when no other CNA has coverage. The expansion follows AISLE's initial CNA designation on July 22, 2026, which was limited to its own products. AISLE aims to improve the speed and accuracy of vulnerability disclosures, addressing the growing security backlogs in the software ecosystem. The company has reported hundreds of vulnerabilities across popular open-source projects, facilitating timely disclosures that support remediation efforts. Jaya Baloo, AISLE's CISO, emphasized the importance of this expanded authority in enhancing global vulnerability management.

Key Points: • AISLE's scope as a CVE Numbering Authority now includes third-party software vulnerabilities. • The company aims to expedite vulnerability disclosures amid increasing security backlogs. • AISLE has reported hundreds of vulnerabilities in widely used open-source projects.

Timeline

2026-07-22
AISLE designated as CVE Numbering Authority
AISLE received its initial CNA designation from ENISA, covering its own products.
Globenewswire
2026-08-26
AISLE expands CNA scope
AISLE announced its expanded scope to cover all products and third-party vulnerabilities, enhancing its role in vulnerability management.
Markets.Businessinsider