started · updated
AGEST updates SBOM Archi to support EU Cyber Resilience Act compliance
AGEST has released version 2.2 of its software bill of materials (SBOM) management tool, SBOM Archi. This update introduces specific features designed to help companies comply with the European Union’s Cyber Resilience Act (CRA), which will begin phased mandatory reporting in September 2026.
Key updates include integration with the European Vulnerability Database (EUVD) managed by ENISA, allowing for vulnerability matching via EUVD-IDs. The tool also now includes audit logging capabilities to maintain records of SBOM updates and decision-making processes as required by CRA standards. Additionally, a new status management feature allows users to track CRA-specific reporting statuses independently of technical advisories.
The update also adds support for the latest Common Vulnerability Scoring System (CVSS) version 4.0 and includes various functional improvements and bug fixes.
Entities
AGEST · ENISA · European Union · SBOM Archi