Release notes

# CISA known exploited vulnerabilities tags and notifications

Chris Schubert November 9, 2022

You can now quickly identify which vulnerabilities on your assets are on CISA’s list of known exploited vulnerabilities (KEV), pointing you towards your highest areas of risk at a glance.

At any given time, threat actors are only targeting a small number of vulnerabilities, and this feature will allow you to prioritize the remediation of those vulnerabilities that directly impact your business. As part of this feature, you can also set up notifications to be informed when a vulnerability you have is added to the KEV list.

### New Data Leaks home page

The new Data Leaks Home page provides more reporting capabilities for understanding where those mentions of your brand keywords are occurring. UpGuard’s Data Leaks engine processes billions of files each day to identify the small number of sensitive data exposures affecting our customers. This information will help understand your risk profile for leaks and demonstrate your controls for the timely detection of data exposures. Over the coming weeks, this feature will be rolled out to accounts with Data Leaks enabled.

### Additional risks for website security headers

We’ve added detection for more risks related to website security headers. These risks will be released in a “[provisional state](https://help.upguard.com/en/articles/6708571-what-are-provisional-risks),” meaning they are visible but do not affect scoring. After a provisional period of one month, the risks will be updated to include scoring penalties.

### Improvements to remediation exports

We’ve added new capabilities to the remediation export to assist with tracking and auditing of remediation activity, including:

* Additional fields in the remediation summary exports
* Addition of export capability for individual remediation

To learn more about these improvements check out [How to export your internal remediation requests](https://help.upguard.com/en/articles/5266975-how-to-export-your-internal-remediation-requests) and [How to export your vendor remediation requests](https://help.upguard.com/en/articles/5266979-how-to-export-your-vendor-remediation-requests).

### Other improvements

* Added detection for the OpenSSL 3.0 vulnerabilities CVE-2022-3786 and CVE-2022-3602
* You can now delete risk waivers in UpGuard BreachSight as opposed to archiving them
* This release includes some more performance improvements
* This release includes a number of bug fixes

[View all release notes](/releases)

## UpGuard Release Notes

Learn about new features, changes, and improvements to UpGuard.

### Brand impersonation detection across mobile app stores

Mark Barber September 9, 2026

[Read more](/releases/brand-impersonation-detection-across-mobile-app-stores)

### Clearer citations and timeline for Security Profile checks

Mark Barber August 26, 2026

[Read more](/releases/clearer-citations-and-timeline-for-security-profile-checks)

### Subprocessors in Trust Center

Mark Barber August 12, 2026

[Read more](/releases/subprocessors-in-trust-center)

### Cloud and core infrastructure frameworks in Security Profile

Mark Barber July 29, 2026

[Read more](/releases/cloud-and-core-infrastructure-frameworks-in-security-profile)

### Complete questionnaires without closing remediation

Mark Barber July 15, 2026

[Read more](/releases/complete-questionnaires-without-closing-remediation)

### Company name aliases for smarter detection

Mark Barber July 1, 2026

[Read more](/releases/company-name-aliases-for-smarter-detection)

### FortiBleed Exposure Detection

Mark Barber June 25, 2026

[Read more](/releases/fortibleed-exposure-detection)

### Updated application usage policy controls

Mark Barber June 17, 2026

[Read more](/releases/updated-application-usage-policy-controls)

[View all release notes](/releases)

### See UpGuard In Action

Book a free, personalized onboarding call with one of our cybersecurity experts.

[Free trial](https://www.upguard.com/demo)

[Get a demo](https://www.upguard.com/contact-sales)

Free instant security score

## How secure is your organization?

Request a free cybersecurity report to discover key risks on your website, email, network, and brand.

* Instant insights you can act on immediately
* Hundreds of risk factors including email security, SSL, DNS health, open ports and common vulnerabilities

[Free score](https://www.upguard.com/instant-security-score?)
