The Vulnerabilities category is intended to hold significant vulnerabilities that do not yet have additional intelligence actions or indicators. Once an exploited vulnerability has such indicators, the topic will be moved to Threat Intel based on observed TTPs.