EU Cyber Resilience Act introduces 24-hour exploited-flaw reporting deadline
The EU Cyber Resilience Act has entered into force, requiring manufacturers to report actively exploited vulnerabilities within 24 hours. The measure applies across connected hardware and software products covered by the law.
The requirement creates a major compliance obligation and could improve the speed of coordinated response to software vulnerabilities across the EU market.
Why 48 is a meaningful score
A score of 48 sits in DoomRadar's 41–60 band, which represents meaningful regional, economic or public impact. The score estimates potential severity and wider impact; it is not a probability or a forecast of losses.
See scoring methodology →How much reporting is behind this event
Processing confidence reflects the model's confidence in its event classification from the supplied reports. It does not mean every claim in every linked report is independently verified.