-
Notifications
You must be signed in to change notification settings - Fork 36
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Merge pull request #3134 from branch 'origin/main' into dev
- Loading branch information
Showing
10 changed files
with
2,085 additions
and
1,325 deletions.
There are no files selected for viewing
Binary file added
BIN
+77.7 KB
...ws/cveProgramReport/reservedCVEIDspublishedCVERecordsQuarterlyTrendQ2CY2024.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -8460,16 +8460,16 @@ | |
"country": "Taiwan" | ||
}, | ||
{ | ||
"shortName": "SNPS", | ||
"shortName": "BlackDuck", | ||
"cnaID": "CNA-2021-0013", | ||
"organizationName": "Synopsys", | ||
"scope": "All Synopsys SIG products, as well as vulnerabilities in third-party software discovered by Synopsys SIG that are not in another CNA’s scope", | ||
"organizationName": "Black Duck Software, Inc.", | ||
"scope": "All Black Duck (formerly Synopsys Software Integrity Group) products, as well as vulnerabilities in third-party software discovered by Black Duck that are not in another CNA’s scope", | ||
"contact": [ | ||
{ | ||
"email": [ | ||
{ | ||
"label": "Email", | ||
"emailAddr": "psirt@synopsys.com" | ||
"emailAddr": "psirt@blackduck.com" | ||
} | ||
], | ||
"contact": [], | ||
|
@@ -8480,15 +8480,15 @@ | |
{ | ||
"label": "Policy", | ||
"language": "", | ||
"url": "https://www.synopsys.com/company/legal/vulnerability-disclosure-policy.html" | ||
"url": "https://www.blackduck.com/company/legal/vulnerability-disclosure-policy.html" | ||
} | ||
], | ||
"securityAdvisories": { | ||
"alerts": [], | ||
"advisories": [ | ||
{ | ||
"label": "Advisories", | ||
"url": "https://www.synopsys.com/blogs/software-security/" | ||
"url": "https://www.blackduck.com/blog/category.cyrc.html#1" | ||
} | ||
] | ||
}, | ||
|
@@ -21606,7 +21606,7 @@ | |
"country": "USA" | ||
}, | ||
{ | ||
"shortName": "GitHub, Inc.", | ||
"shortName": "OS-S", | ||
"cnaID": "CNA-2024-0031", | ||
"organizationName": "OpenSource Security GmbH", | ||
"scope": "Vulnerabilities discovered by or reported to OpenSource Security, unless covered by another CNA’s scope", | ||
|
@@ -23479,5 +23479,229 @@ | |
] | ||
}, | ||
"country": "Taiwan" | ||
}, | ||
{ | ||
"shortName": "Pall", | ||
"cnaID": "CNA-2024-0065", | ||
"organizationName": "Pall Corporation", | ||
"scope": "Pall branded products only", | ||
"contact": [ | ||
{ | ||
"email": [ | ||
{ | ||
"label": "Email", | ||
"emailAddr": "[email protected]" | ||
} | ||
], | ||
"contact": [], | ||
"form": [] | ||
} | ||
], | ||
"disclosurePolicy": [ | ||
{ | ||
"label": "Policy", | ||
"language": "", | ||
"url": "https://www.pall.com/en/about-pall/product-security-cvd.html" | ||
} | ||
], | ||
"securityAdvisories": { | ||
"alerts": [], | ||
"advisories": [ | ||
{ | ||
"label": "Advisories", | ||
"url": "https://www.pall.com/en/about-pall/product-security-cvd/known-vulnerabilities.html" | ||
} | ||
] | ||
}, | ||
"resources": [], | ||
"CNA": { | ||
"isRoot": false, | ||
"root": { | ||
"shortName": "icscert", | ||
"organizationName": "Cybersecurity and Infrastructure Security Agency (CISA) Industrial Control Systems (ICS)" | ||
}, | ||
"roles": [ | ||
{ | ||
"helpText": "", | ||
"role": "CNA" | ||
} | ||
], | ||
"TLR": { | ||
"shortName": "CISA", | ||
"organizationName": "Cybersecurity and Infrastructure Security Agency (CISA)" | ||
}, | ||
"type": [ | ||
"Vendor" | ||
] | ||
}, | ||
"country": "USA" | ||
}, | ||
{ | ||
"shortName": "MyMMT", | ||
"cnaID": "CNA-2024-0066", | ||
"organizationName": "Mammotome", | ||
"scope": "All Mammotome products", | ||
"contact": [ | ||
{ | ||
"email": [], | ||
"contact": [ | ||
{ | ||
"label": "Mammotome Report a Vulnerability page", | ||
"url": "https://www.mammotome.com/us/en/legal/product-security/report-a-security-vulnerability" | ||
} | ||
], | ||
"form": [] | ||
} | ||
], | ||
"disclosurePolicy": [ | ||
{ | ||
"label": "Policy", | ||
"language": "", | ||
"url": "https://www.mammotome.com/us/en/legal/product-security/product-security-overview" | ||
} | ||
], | ||
"securityAdvisories": { | ||
"alerts": [], | ||
"advisories": [ | ||
{ | ||
"label": "Advisories", | ||
"url": "https://www.mammotome.com/us/en/legal/product-security/product-security-updates" | ||
} | ||
] | ||
}, | ||
"resources": [], | ||
"CNA": { | ||
"isRoot": false, | ||
"root": { | ||
"shortName": "icscert", | ||
"organizationName": "Cybersecurity and Infrastructure Security Agency (CISA) Industrial Control Systems (ICS)" | ||
}, | ||
"roles": [ | ||
{ | ||
"helpText": "", | ||
"role": "CNA" | ||
} | ||
], | ||
"TLR": { | ||
"shortName": "CISA", | ||
"organizationName": "Cybersecurity and Infrastructure Security Agency (CISA)" | ||
}, | ||
"type": [ | ||
"Vendor" | ||
] | ||
}, | ||
"country": "USA" | ||
}, | ||
{ | ||
"shortName": "wikimedia-foundation", | ||
"cnaID": "CNA-2024-0067", | ||
"organizationName": "The Wikimedia Foundation", | ||
"scope": "Any code repository hosted under <a href='https://gerrit.wikimedia.org' target='_blank'>gerrit.wikimedia.org</a>, <a href='https://gitlab.wikimedia.org' target='_blank'>gitlab.wikimedia.org</a>, or <a href='https://github.com/wikimedia' target='_blank'>github.com/wikimedia</a> that is not labeled as archived or marked as a fork of an upstream project. Please see our <a href='https://www.mediawiki.org/wiki/Reporting_security_bugs' target='_blank'>disclosure policy</a> for additional exclusions to scope", | ||
"contact": [ | ||
{ | ||
"email": [ | ||
{ | ||
"label": "Email", | ||
"emailAddr": "[email protected]" | ||
} | ||
], | ||
"contact": [], | ||
"form": [] | ||
} | ||
], | ||
"disclosurePolicy": [ | ||
{ | ||
"label": "Policy", | ||
"language": "", | ||
"url": "https://www.mediawiki.org/wiki/Reporting_security_bugs" | ||
} | ||
], | ||
"securityAdvisories": { | ||
"alerts": [], | ||
"advisories": [ | ||
{ | ||
"label": "Advisories", | ||
"url": "https://gitlab.wikimedia.org/repos/security/wikimedia-cve-assignments" | ||
} | ||
] | ||
}, | ||
"resources": [], | ||
"CNA": { | ||
"isRoot": false, | ||
"root": { | ||
"shortName": "n/a", | ||
"organizationName": "n/a" | ||
}, | ||
"roles": [ | ||
{ | ||
"helpText": "", | ||
"role": "CNA" | ||
} | ||
], | ||
"TLR": { | ||
"shortName": "mitre", | ||
"organizationName": "MITRE Corporation" | ||
}, | ||
"type": [ | ||
"Open Source" | ||
] | ||
}, | ||
"country": "USA" | ||
}, | ||
{ | ||
"shortName": "RTI", | ||
"cnaID": "CNA-2024-0068", | ||
"organizationName": "Real-Time Innovations, Inc.", | ||
"scope": "All RTI Connext products, including EOL products. See <a href='https://www.rti.com/products' target='_blank'>https://www.rti.com/products</a> for more information", | ||
"contact": [ | ||
{ | ||
"email": [ | ||
{ | ||
"label": "Email", | ||
"emailAddr": "[email protected]" | ||
} | ||
], | ||
"contact": [], | ||
"form": [] | ||
} | ||
], | ||
"disclosurePolicy": [ | ||
{ | ||
"label": "Policy", | ||
"language": "", | ||
"url": "https://community.rti.com/static/documentation/connext-dds/current/doc/vulnerabilities/#rti-s-approach-to-vulnerability-detection-and-management" | ||
} | ||
], | ||
"securityAdvisories": { | ||
"alerts": [], | ||
"advisories": [ | ||
{ | ||
"label": "Advisories", | ||
"url": "https://community.rti.com/static/documentation/connext-dds/current/doc/vulnerabilities/#" | ||
} | ||
] | ||
}, | ||
"resources": [], | ||
"CNA": { | ||
"isRoot": false, | ||
"root": { | ||
"shortName": "n/a", | ||
"organizationName": "n/a" | ||
}, | ||
"roles": [ | ||
{ | ||
"helpText": "", | ||
"role": "CNA" | ||
} | ||
], | ||
"TLR": { | ||
"shortName": "mitre", | ||
"organizationName": "MITRE Corporation" | ||
}, | ||
"type": [ | ||
"Vendor" | ||
] | ||
}, | ||
"country": "USA" | ||
} | ||
] |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.