Announcements

Introducing the Resolved Security Vulnerability Catalog

Discover how the Resolved Security Vulnerability Catalog brings exploit-maturity insights, remediation options and tangible fixes together in one searchable platform.

CVEs are flooding security teams. With 40,000+ new disclosures a year and exploits emerging in minutes, the real question isn’t “what’s vulnerable?” - it’s “what’s actually exploitable, and how do we fix it fast?”

That's why we're excited to launch the Resolved Security Vulnerability Catalog - a comprehensive resource that brings together the intelligence you need to prioritize and fix vulnerabilities effectively.

The Missing Piece: Where's My Tangible Fix?

Traditional vulnerability databases are great at telling you there's a problem. You get a CVE ID, a severity score, maybe some technical details. But then what?

When it comes to actually fixing the vulnerability, most databases leave you hanging:

  • Vague remediation advice: "Fixed in version 2.5.0" - but what about the dozen versions between your current version and 2.5.0?
  • No alternatives: Upgrade is presented as the only option, with no consideration for compatibility, breaking changes, or your release schedule
  • No insight into the fix: You know a patch exists, but not what it actually does or why it works - making it impossible to evaluate alternatives or understand the risk

What Makes the Vulnerability Catalog Different

The Resolved Security Vulnerability Catalog cuts through the noise by providing:

Complete Exploitability Intelligence
Every CVE includes exploit maturity data and POC availability, so you can understand which vulnerabilities pose actual risk. No more guessing which alerts to prioritize.

Real Fix Options - Not Just Upgrade Paths
Here's where we diverge from every other vulnerability database: we don't just tell you to upgrade. For many CVEs, we provide Resolved Security fixes - secure, backported patches that fix the vulnerability without forcing risky dependency upgrades. And we show you exactly how the patch addresses the vulnerability, so you understand what's being fixed and why it works.

This matters because upgrading dependencies isn't always the answer. Breaking changes, compatibility issues, and cascading updates can turn a simple security fix into days or weeks of work. Our catalog shows you both options: upgrade to the latest version, or use Resolved's backported fix to patch the vulnerability while staying on your current version.

Everything in One Place
Stop toggling between multiple tools and databases. The catalog consolidates CVE data, exploitability signals, and remediation options in a single, searchable interface.

Built for How Teams Actually Work

We designed the Vulnerability Catalog around a simple insight: security teams need to know what's exploitable, and development teams need practical ways to fix it. By combining threat intelligence with actionable remediation options - including our backported fixes - we're bridging the gap between security urgency and engineering reality.

The result? Faster remediation, less disruption, and better security outcomes.

Get Started Today

The Resolved Security Vulnerability Catalog is live now. Search for any CVE to see exploit maturity, available POCs, and your fix options - including how our backported patches address each vulnerability.

Explore the Vulnerability Catalog →

Ready to see how Resolved Security can transform your vulnerability management workflow? Book a demo to see how we automatically apply these fixes to your dependencies, or learn more about why backporting is your secret weapon.

Our Blog

More articles