FEDERALUnknownLow
CVS HEALTH CORPORATION
bd_92f7ef2a38656f28 · schema v1 · pii pii-v1
Full breach record for CVS HEALTH CORPORATION →Item 1C of a 10-K filing describing the registrant's cybersecurity risk management and governance. The company states it did not experience a material cybersecurity incident during the year ended December 31, 2025. The filing details the company's information security program, incident response plan, and board oversight of cybersecurity risks.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://www.sec.gov/Archives/edgar/data/64803/000006480326000010/cvs-20251231.htm
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Feb 10, 2026
- Raw hash
- 422bac70c4d888c89306c113ee8cdf6b84367bd5917b32ca098b07153f9decec
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- CVS HEALTH CORPORATIONnorm: cvs health
- SEC CIK
- 64803
- Domain
- cvshealth.com
Victim entity
- Name
- CVS HEALTH CORPORATIONnorm: cvs health
- SEC CIK
- 64803
- Domain
- cvshealth.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- —
- Attack vector
- Unknown
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.