← All courses

Coordinated Vulnerability Disclosure – Basics

A compact introduction to Coordinated Vulnerability Disclosure: what CVD is, why it exists, which roles are involved, and what finders and vendors must concretely do. Relevant for everyone subject to the Cyber Resilience Act or NIS2.

What you'll learn

  • Explain Coordinated Vulnerability Disclosure in your own words
  • Name the three central roles in the CVD process
  • Describe the six-phase CVD process
  • Act responsibly as a finder
  • Meet minimum requirements from CRA and NIS2 as a vendor

Tags

securitycvdvulnerability-disclosureeacgcranis2
Module 01 - Introduction
  • Introduction 0:44
  • What is CVD — and why does it matter to you? 4:16
  • Quick Entry Check
Module 02 - Why CVD Is Not Optional
  • Why CVD Is Not Optional 0:10
  • The Problem and Its Consequences 8:19
  • Check: The Problem
Module 03 - Roles & Process
  • Roles & Process 0:08
  • The Three Roles in the CVD Process 6:09
  • The CVD Process in Six Phases 8:52
  • Check: Roles and Process
Module 04 - What to Do Concretely
  • What to Do Concretely 0:10
  • Acting as Finder and Vendor 9:05
  • Final Quiz
Module 05 - Closing
  • Closing 0:06
  • Take-home messages and Resources 4:08