Business
87% of Organizations Are Running Software With Known, Exploitable Vulnerabilities, Datadog Finds
The State of DevSecOps Report 2026 highlights a broader industry shift as security risk increasingly moves upstream into the software supply chainNEW YORK, Feb. 26, 2026 (GLOBE NEWSWIRE) -- Datadog, Inc. (NASDAQ: DDOG), the AI-powered observability and security platform for cloud applications, today released its latest State of DevSecOps Report, finding that nearly nine in 10 organizations (87%) have at least one known exploitable vulnerability in deployed services. The report points to a broade
About this update from Datadog, Inc.
[{"type":"image","alt":"Datadog, Inc.","displaySize":"","headline":null,"caption":"Datadog, Inc.","className":"","disableSlideshowImg":false,"size":{"original":{"width":300,"height":171,"url":"https://media.zenfs.com/en/globenewswire.com/37bcf53ea28806931e2147834f121b1c"},"resized":{"url":"https://s.yimg.com/ny/api/res/1.2/1rcTA3dZNs6FtbkuijN_WA--/YXBwaWQ9aGlnaGxhbmRlcjt3PTQyMDtoPTIzOTtjZj13ZWJw/https://media.zenfs.com/en/globenewswire.com/37bcf53ea28806931e2147834f121b1c","width":300,"height":171}},"lazy":false},{"type":"text","content":"The State of DevSecOps Report 2026 highlights a broader industry shift as security risk increasingly moves upstream into the software supply chain","length":146,"tagName":"p"},{"type":"text","content":"NEW YORK, Feb. 26, 2026 (GLOBE NEWSWIRE) -- Datadog, Inc. (NASDAQ: DDOG), the AI-powered observability and security platform for cloud applications, today released its latest State of DevSecOps Report, finding that nearly nine in 10 organizations (87%) have at least one known exploitable vulnerability in deployed services.","length":324,"tagName":"p"},{"type":"text","content":"The report points to a broader industry shift, with security risk increasing across the software delivery lifecycle. As development accelerates, becomes more automated, and relies more heavily on third-party components, risk is increasingly shaped by the software supply chain and the tools used to build and deploy applications - not just the code that runs in production.","length":373,"tagName":"p"},{"type":"text","content":"Key findings at a glance:","length":25,"tagName":"p"},{"type":"list","items":[{"val":[{"type":"text","content":"87% of organizations have at least one known exploitable vulnerability in deployed services","length":91,"tagName":"p"}]},{"val":[{"type":"text","content":"42% of services rely on libraries that are no longer actively maintained","length":72,"tagName":"p"}]},{"val":[{"type":"text","content":"Services using end-of-life language versions face exploitable vulnerabilities in 50% of cases, compared to 31% for supported versions","length":133,"tagName":"p"}]},{"val":[{"type":"text","content":"50% of organizations adopt new library versions within 24 hours of release, increasing the risk of installing malicious or compromised software","length":143,"tagName":"p"}]},{"val":[{"type":"text","content":"Only 4% of organizations pin...