Skip to main content
TA-Vulnerability catalog app icon

TA-Vulnerability catalog

Brings the CISA KEV catalog, CISA Vulnrichment and FIRST.org EPSS scores into Splunk, normalized to the CIM Vulnerabilities data model.Built by hiroaki ogawa
splunk product badge

Default Version 1.1.1

October 5, 2026

Compatibility

Splunk Enterprise, Splunk Cloud

Platform Version: 10.6, 10.5, 10.4, 10.3, 10.2

CIM Version: 5.x

Rating
5
(2)

Log in to rate this app

Support
Not Supported

*ENGLISH* **TA-Vulnerability catalog** ingests three public vulnerability catalogs into Splunk and normalizes them to the CIM **Vulnerabilities** data model: the CISA KEV catalog, CISA Vulnrichment (CVE Record 5.x with CISA ADP enrichment) and FIRST.org EPSS scores. Together they answer the three questions that drive patch prioritization — is this CVE being exploited, how likely is it to be, and how bad would it be. Collection is incremental, and Vulnrichment events retain the complete raw CVE record. *JAPANESE* **TA-Vulnerability catalog** は、3つの公開脆弱性カタログを Splunk に取り込み、CIM **Vulnerabilities** データモデルに正規化する Technology Add-on です。対象は CISA KEV カタログ、CISA Vulnrichment(CVE Record 5.x + CISA ADP による拡充)、FIRST.org EPSS スコア。 「その CVE は悪用されているか」「悪用される確率はどれだけか」「悪用されたら影響はどれだけか」 という、対応優先度を決める3つの問いに答えるためのデータが揃います。取り込みは差分方式で、 Vulnrichment は CVE レコードの原本をそのまま保持します。