Regulation (EU) 2024/2847 · Preamble
Recital 65
LAW Official text
(65) Manufacturers should notify simultaneously via the single reporting platform both the computer security incident response team (CSIRT) designated as coordinator as well as ENISA of actively exploited vulnerabilities contained in products with digital elements, as well as severe incidents having an impact on the security of those products. The notifications should be submitted using the electronic notification end-point of a CSIRT designated as coordinator and should be simultaneously accessible to ENISA.
BINDING Source: Regulation (EU) 2024/2847 (Cyber Resilience Act) · publisher European Union · captured 2026-09-16 · snapshot
sha256:27b7c6c64c773001… · CELEX 32024R2847Recitals are the Regulation's stated reasoning. Obligations live in the articles; the recitals inform how those obligations are read.