


Flock Authorized as a CVE Numbering Authority by CISA
Flock has been authorized by CISA as a CVE Numbering Authority, giving it a direct role in identifying, cataloging, and disclosing security vulnerabilities in its own products.
ATLANTA, GA, October 6, 2026 — Flock, a leading public safety technology company, announced that it has been authorized by CISA as a CVE Numbering Authority (CNA). As a CNA, Flock is now authorized to assign CVE Identifiers (CVE IDs) to vulnerabilities discovered in its own branded hardware and software products, and to publish the associated CVE Records directly to the CVE catalog.
As a CNA, Flock has a direct, streamlined channel for coordinating with the independent security research community. Rather than relying on outside parties to request CVE IDs on Flock's behalf, sometimes before a fix is ready, Flock can now acknowledge findings, assign CVE IDs, and coordinate disclosure timelines internally, ensuring researchers receive proper credit while customers receive clear, consistent, and timely information about vulnerabilities that affect their systems.
"Becoming a CVE Numbering Authority reflects our commitment to transparency and collaboration with the security research community,” said Chris Castaldo, Chief Information Security Officer of Flock. “It allows us to move faster when researchers report findings, eliminate confusion from duplicate or conflicting vulnerability entries, and give our customers a single, trusted source for security information about our products."
CVE Numbering Authorities (CNAs) are organizations responsible for the regular assignment of CVE IDs to vulnerabilities and for creating and publishing the associated CVE Records. Each CNA has a defined scope of responsibility. Flock's scope covers Flock-branded hardware and software products.
Flock's vulnerability disclosure policy and process for reporting security issues are available HERE. Security advisories from Flock, including CVE information related to Flock products and systems, current and historical, can be found HERE.
About Flock
Flock is the leading safety technology platform, helping communities thrive by taking a proactive approach to crime prevention and security. Our end-to-end hardware and software suite unites cities, law enforcement, businesses, schools, and neighborhoods in a nationwide public-private safety network. Flock is trusted by more than 6,000 communities, 5,000 law enforcement agencies, and 1,000 businesses to deliver real-time intelligence while upholding the highest standards of privacy, data integrity, and responsible innovation.
.jpg)
About the CVE Program
The mission of the Common Vulnerabilities and Exposures (CVE®) Program is to identify, define, and catalog publicly disclosed cybersecurity vulnerabilities. There is one CVE Record for each vulnerability in the catalog. The vulnerabilities are discovered, then assigned and published by organizations from around the world that have partnered with the CVE Program. Partners publish CVE Records to communicate consistent descriptions of vulnerabilities, so that information technology and cybersecurity professionals can ensure they are discussing the same issue and coordinate their efforts to prioritize and address it.
The CVE Program is sponsored by the Cybersecurity and Infrastructure Security Agency (CISA), part of the U.S. Department of Homeland Security, and is operated by the MITRE Corporation in close collaboration with international industry, academic, and government stakeholders. The CVE List feeds the U.S. National Vulnerability Database (NVD), maintained by the National Institute of Standards and Technology (NIST).
Media Contact
media@flocksafety.com
Protect What Matters Most.
Discover how communities across the country are using Flock to reduce crime and build safer neighborhoods.
.webp)







