CYBER RESILIENCE ACT

Report Vulnerabilities –
Working Together to Improve Safety

Have you discovered a security vulnerability in a Delphin product? Please report it confidentially using this form. We take every report seriously and handle it in accordance with our Coordinated Disclosure Process.

🕖 Response within 72 hours

🔒 Confidential Treatment

✅ CVE coordination upon request

REPORT FORM

Report a Security Vulnerability

Please fill out the form as completely as possible. All fields marked with * are required.

Security Vulnerability Reporting Form (CRA Coordinated Vulnerability Disclosure) (#23)

🕖 Our Process

1

Confirmation of Receipt
Within 72 hours – with reference number

2

Triage & Assessment
Assessing and Evaluating Risk

3

Coordination
Address any questions and coordinate the disclosure schedule

4

Fix & Patch
Development. Testing, progress updates to the reporter

5

Publication
Security Advisory + CVE Assignment (if applicable)

📑 CRA – LEGAL FRAMEWORK

Art. 14 CRA
Requires manufacturers to provide a reporting channel for actively exploited vulnerabilities.

Appendix I, Part II
Calls for coordinated vulnerability disclosure processes.

ENISA Reporting Requirement
Requirement to report within 24 hours in the event of active exploitation of critical vulnerabilities.

CRA Compliance
Delphin aims to achieve CRA compliance for all relevant product families by spring 2027.

☎️ Direct Contact

✉️

Security Team
[email protected]

📞

Support hotline
+49 2204 97685-0

⚠️

Note: This channel is intended exclusively for security vulnerabilities. For general technical support, please use the support hotline.

Germany

Delphin Technology AG
Lustheide 81
51427 Bergisch Gladbach (Refrath)

Phone +49 2204 97685-0
Fax +49 2204 97685-85

E-Mail [email protected]
www.delphin.de

For directions, click here.