Upon withdrawal of a certificate, the holder of the EUCC certificate shall disclose and register any publicly known and remediated vulnerability in the ICT product on the European vulnerability database, established in accordance with Article 12 of Directive (EU) 2022/2555 of the European Parliament and of the Council ( 5 ) or other online repositories referred to in Article 55(1), point (d) of Regulation (EU) 2019/881.
Compiled from an official source version. Later amendments or repeals may not be reflected; the official text prevails. · Read the official text ↗ · Data as of 2026-07-04
CitationArticle 39 of Commission Implementing Regulation (EU) 2024/482 (LawPlayer, data as of 2026-07-04)