CompTIA CASP+ CAS-004 – Question070

A vulnerability analyst identified a zero-day vulnerability in a company's internally developed software. Since the current vulnerability management system does not have any checks for this vulnerability, an engineer has been asked to create one.
Which of the following would be BEST suited to meet these requirements?

A.
ARF
B. ISACs
C. Node.js
D. OVAL

Correct Answer: D