Vulnerability Notifications
Stay informed about significant security vulnerabilities affecting technologies used across the University.
Why
Cyber attacks often take advantage of known software vulnerabilities before organisations have had the opportunity to apply updates or mitigations.
How
The University's security service continuously monitors a range of trusted threat intelligence and vulnerability information sources. When a significant vulnerability is identified that may affect systems used by the University:
- The vulnerability is reviewed and validated by the security team.
- The potential impact to University services is assessed.
- Relevant vulnerability information, including severity, affected products and recommended actions, is communicated to the appropriate stakeholders.
- Notifications are tracked to support remediation and risk management activities.
What
The Vulnerability Notification Service provides:
- Alerts on significant security vulnerabilities that may affect University technologies.
- Information on affected products and versions.
- Details of vulnerability severity and risk.
- Links to vendor advisories and technical guidance.
- Recommended remediation or mitigation actions where available.
Who should use this service?
This service is primarily intended for:
-
System Owners
-
Technical Leads
-
IT Support Teams
-
Service Managers
-
Third-party service owners responsible for University systems
Any member of staff with responsibility for managing technology services may find the information helpful.
Important Note
A vulnerability notification does not necessarily mean that the University is affected by a vulnerability. Notifications are provided to raise awareness and support risk assessment and remediation activities where relevant.