Skip to content

Reporters

amanion-cisa edited this page Sep 17, 2026 · 5 revisions

Reporters (often called "researchers") are Users who report vulnerabilities. Effectively all VINCE-NT users are capble of submitting vulnerability reports.

1. Report a Vulnerability

Your VINCE-NT identity (if logged in) and any information you provide will be shared with Suppliers and possibly other parties as part of Case handling (link to terms).

  1. Log in to VINCE-NT.

    1. It is possible to report a vulerability without logging in. To do so, visit https://vulnerabilities.cisa.gov/ and select [Submit a Vulnerability Report].

    2. If you report a vulnerability without logging in, we will still analyze and potentially coordinate your report. We may, however, not be able to communicate with you.

  2. Select [Report a Vulnerability] on the left sidebar.

  3. Follow the guidance to fill out the form.

    1. To report multiple vulnerabilities, select [Clone] or [Add Additional Vulnerability].
  4. Select [Submit].

2. View Reports

When you first submit a Report, a provisional Case is created in Pending status. To see your Reports, including those in Pending status:

  1. Select [My Reports] on the left sidebar. Your Reports are displayed as cards.

  2. If a Report has been made into an active Case, the [CASE#] title is linked to the Case.

3. Navigate to a Case

After a Coordinator marks the Report as Active, the Report is turned into a Case. After a Report (Case) has been marked Active, you can see the new Case.

See All Users: Navigate to a Case

4. Add (upload) file attachment to Case

See All Users: Add (upload) File Attachment to Case

5. Remove File Attachment From Case

See All Users: Remove file attachment from Case

6. Communicate outside of a Case

See All Users: Communicate outside of a Case

7. Communicate in a Case

See All Users: Communicate in a Case

Clone this wiki locally