Virtual Patching
The use of a compensating control, such as a firewall rule that blocks a vulnerable endpoint, to reduce exposure to a vulnerability without changing the vulnerable code. It buys time before the real patch is applied but leaves the flaw in place, so it must be treated as a temporary measure with a defined expiry.