

Tenable is updating its Vulnerability Precedence Ranking (VPR) methodology of scoring vulnerabilities to allow organizations to focus their efforts on essentially the most essential and impactful vulnerabilities.
In keeping with the corporate, Widespread Vulnerability Scoring System (CVSS), which is utilized by the CVE database, flags 60% of vulnerabilities as excessive or essential. When Tenable VPR was launched in 2019, it solely flagged 3% as excessive or essential, and right now’s updates carry that quantity all the way down to 1.6%.
Tenable says this cuts down on noise, resulting in quicker mean-time-to-remediation, optimized assets, and safety efforts which are higher aligned with organizational priorities.
Among the methods Tenable is ready to scale back the variety of vulnerabilities flagged as essential is that it recalculates danger prioritization each evening for over 280,000 completely different vulnerabilities, predicts the probability of a vulnerability being exploited within the close to future, and provides a precedence score on a scale from 1 to 10.
VPR additionally now makes use of AI to generate risk summaries and remediation insights. Moreover, Tenable added enhanced filtering, querying, and metadata to allow organizations to prioritize vulnerabilities based mostly on threats particular to their business and area.
“We’re taking our game-changing Tenable VPR to the subsequent degree with these AI-powered enhancements,” stated Eric Doerr, chief product officer at Tenable. “Tenable VPR brings an unmatched precision and depth of risk intelligence, context and explainability to cyber operations. With these essential insights at their fingertips, organizations can clearly visualize why an publicity issues, the place they’re weak and the way to shut their precedence dangers.”
The corporate might be going by the updates to VPR in a webinar on Tuesday, August 19, 2025 at 11 AM ET (8 AM PT).