Communications Very Erratic (CVE): Stabilizing Vuln Data for the Industry (OSFF NY Preview)

Communications Very Erratic (CVE): Stabilizing Vuln Data for the Industry (OSFF NY Preview)

Author: FINOS October 5, 2025 Duration: 34:14

🚨 What happens when the backbone of vulnerability reporting wobbles? In April 2025, funding shocks to CVE/CWE—and the downstream NVD—sparked panic before a short-term lifeline appeared. The uncertainty hasn’t gone away.In this clip:Christopher “CRob” Robinson, CTO & Chief Security Architect, OpenSSF (The Linux Foundation)CRob previews his OSFF NY session on why reliable, authoritative vulnerability metadata is critical for banks, regulated enterprises, and open source maintainers—and what upstream is doing about it. He walks through the recent CVE/NVD turbulence, why downstream teams (risk, OSPOs, product owners) struggle to meet regulatory obligations without stable data, and how the open source community is collaborating to deliver consistent, high-quality vulnerability information going forward. Expect clear context, practical takeaways, and a path from fragmented signals to trustworthy feeds.🎟️ See CRob’s full talk at OSFF New York (Oct 21–22, 2025).🌐 More about FINOS: https://www.finos.org/📧 Join our newsletter: https://www.finos.org/newsletter#FINOS #OSFFNY #OpenSourceSecurity #OpenSSF #CVE #CWE #NVD #VulnerabilityManagement #Risk #Compliance #SupplyChainSecurity


The FINOS Open Source in Finance Podcast, presented by FINOS, delves into the practical realities of applying open source principles within the financial sector. This isn't a theoretical discussion; it's a series of conversations with industry experts who share their direct experiences implementing specific technologies. Episodes explore the tangible benefits and challenges of projects focused on areas like desktop interoperability, which streamlines how complex applications work together, and low-code platforms that accelerate development. Listeners will hear detailed analysis on using synthetic data for testing and innovation, as well as approaches to effective data modeling. The dialogue extends into organizational strategy, covering best practices for establishing successful inner source programs and fostering collaborative development cultures inside large institutions. Each episode of this podcast focuses on a concrete use case or a pressing question at the intersection of finance and open collaboration, providing actionable insights rather than abstract concepts. It's a resource for professionals who want to understand how open source is actively shaping tools, processes, and competitive advantages in financial services today.
Author: Language: English Episodes: 100

FINOS Open Source in Finance Podcast
Podcast Episodes
Karl Moll - Technical Project Advocate, FINOS [not-audio_url] [/not-audio_url]

Duration: 51:11
In this episode of the podcast, Grizz sits down with Karl Moll, the newest addition to the FINOS team! Karl is the FINOS Technical Project Advocate, and will play a huge role in the FINOS Community in 2024. We sit down a…
Alex Lakatos - CTO at The Interledger Foundation [not-audio_url] [/not-audio_url]

Duration: 44:39
In this episode of the podcast, Grizz sits down with Alex Lakatos - CTO at The Interledger Foundation (a new Associate Member of FINOS). We talk about Alex's developer / devrel journey, the Interledger Foundaiton, paymen…
Navigating FDC3 UX - Cortney Stauffer & Chuck Danielsson, Adaptive [not-audio_url] [/not-audio_url]

Duration: 34:24
In this episode of the podcast, Grizz sits down with Cortney Stauffer (Head of UX Practice) & Chuck Danielsson (Head of Practice, Web/UI), both from Adaptive. They talk about UX, UI, FDC3, and why things should just work…
OSFF Track Breakdown & FINOS August 9 2023 Debrief [not-audio_url] [/not-audio_url]

Duration: 44:32
In this episode of the podcast, we break down the newly released schedule from the Open Source in Finance Forum (OSFF). Plus - we return to our FINOS Debrief episodes that wrap up the past month in the FINOS Ecosystem -…