@arrasz i guess some tools will stay with the NIST NVD because its easier to change nothing, praying the funding will go on 2026+ :D
if data can be easily merged or is even a drop-in replacement, it would help adoption in short-term.
i would guess it should be pretty compatible, since ENISA has been a CVE Numbering Authority for almost a year, so they already use the NIST/MITRE structure.
most commercial tools use multiple sources anyway on top of NVD, so the mechanisms are there already