New CNA – TR-CERT

2021-08-31 Thread CVE Program Secretariat
: MITRE Disclosure Policy location: https://www.usom.gov.tr/en Advisory location: https://www.usom.gov.tr/tehdit.html Public point of contact: c...@usom.gov.tr<mailto:c...@usom.gov.tr> CNA Type: National and Industry CERTs Total participating CNAs is 182, in 31 countries. Respectfully, CVE P

Please share our newest CVE Podcast episode "Managing Modernization and Automation Changes in the CVE Program"

2021-08-26 Thread CVE Program Secretariat
Hi Everyone, We'd like to ask everyone to please share & like our newest We Speak CVE podcast episode: Managing Modernization and Automation Changes in the CVE Program TWITTER: https://twitter.com/CVEannounce/status/1430254407673958401 LINKEDIN:

CVE website transitioning to new “CVE.ORG” web address - process to begin in late September and last one year

2021-09-02 Thread CVE Program Secretariat
was also posted on Twitter, LinkedIn, and the current CVE website. Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [cid:image001.png@01D7A024.60D38260]

New CNA – Censys

2021-09-07 Thread CVE Program Secretariat
://censys.io/vulnerability-disclosure Advisory location: https://censys.io/blog Public point of contact: secur...@censys.io<mailto:secur...@censys.io> CNA Type: Vendors and Projects, Vulnerability Researchers Total participating CNAs is 182, in 31 countries. Respectfully, CVE Program Secre

New CNA – Snow Software

2021-09-14 Thread CVE Program Secretariat
Advisory location: https://community.snowsoftware.com/s/group/0F91r00QUhPCAW/news-updates Public point of contact: secur...@snowsoftware.com<mailto:secur...@snowsoftware.com> CNA Type: Vendors and Projects Total participating CNAs is 184, in 31 countries. Respectfully, CVE P

New CNA – LG Electronics

2021-09-14 Thread CVE Program Secretariat
ojects Total participating CNAs is 184, in 31 countries. Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [cid:image001.png@01D7A9AA.55B7C3C0]

** New CNA – Profelis IT Consultancy **

2021-12-08 Thread CVE Program Secretariat
Colleagues, The CVE Program is happy to announce a new CNA: Name: Profelis IT Consultancy Location: Turkey Root: MITRE CNA details: https://www.cve.org/PartnerInformation/ListofPartners/partner/Profelis Total participating CNAs is 205, in 32 countries. Respectfully, CVE Program

** New CNA – TeamViewer **

2021-12-08 Thread CVE Program Secretariat
Colleagues, The CVE Program is happy to announce a new CNA: Name: TeamViewer Germany GmbH Location: Germany Root: MITRE CNA details: https://www.cve.org/PartnerInformation/ListofPartners/partner/TeamViewer Total participating CNAs is 205, in 32 countries. Respectfully, CVE Program

** New CNA - ZGR **

2021-11-30 Thread CVE Program Secretariat
Colleagues, The CVE Program is happy to announce a new CNA: Name: ZGR Location: Spain Root: INCIBE CNA details: https://www.cve.org/PartnerInformation/ListofPartners/partner/ZGR Total participating CNAs is 203, in 32 countries. Respectfully, CVE Program Secretariat cve-prog-secretar

** New CNA – Panasonic Corporation **

2021-11-30 Thread CVE Program Secretariat
Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

CVE Board Meeting Summary - February 16, 2022

2022-02-18 Thread CVE Program Secretariat
ordings will be readily available to CVE Board Members. Until then, to obtain a recording of a CVE Board Meeting, please reach out to the CVE Program Secretariat (cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org>). Christine Deal Homeland Security Systems Engineering and Development Institute (HSSEDI) MITRE | Solving Problems for a Safer World™​ 813-830-2338 (cell)

** Two New CNAs – Integrated Control Technology and Xerox Corporation **

2023-09-12 Thread CVE Program Secretariat
curity-response-center/ CNA Type: Vendor Total CNAs: 317 (315 CNAs and 2 CNA-LRs) Total Countries: 37 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** Two New CNAs – Pure Storage and Python Software Foundation **

2023-08-29 Thread CVE Program Secretariat
Source Total CNAs: 314 (312 CNAs and 2 CNA-LRs) Total Countries: 37 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

CVE Board Meeting Notes: August 30, 2023

2023-09-06 Thread CVE Program Secretariat
CVE Board Meeting Notes August 30, 2023 (9:00 am – 11:00 am EDT) Agenda · 9:00-9:05Introduction · 9:05-10:25 Topics * Working Group Updates * CVE (malicious) Link Rot Problem * AI/ML Vulnerabilities · 10:25-10:35Open

** Two New CNAs – Nokia and Securin **

2023-09-06 Thread CVE Program Secretariat
visory location: https://www.securin.io/zero-days-list/ Public point of contact: discl...@securin.io<mailto:discl...@securin.io> CNA Type: Vendor, Open Source, Researcher Total CNAs: 315 (313 CNAs and 2 CNA-LRs) Total Countries: 37 Respectfully, CVE Program Secretariat cve-prog-secretar.

CVE Board Notes: October 11, 2023

2023-10-25 Thread CVE Program Secretariat
CVE Board Meeting Notes October 11, 2023 (2:00 pm – 4:00 pm EDT) Agenda · 2:00-2:05Introduction · 2:05-3:25Topics * Voting: Multiple Members from Same Organization * Fall Virtual Workshop Agenda * Board Meeting Survey Results

** Two New CNAs – KCF Technologies and Yokogawa Group **

2023-10-24 Thread CVE Program Secretariat
act: https://contact.yokogawa.com/cs/gw?c-id=000983 CNA Type: Vendor Total CNAs: 329 (327 CNAs and 2 CNA-LRs) Total Countries: 37 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Descripti

** One New CNA – Libreswan Project **

2023-10-26 Thread CVE Program Secretariat
: https://libreswan.org/security/ Public point of contact: secur...@libreswan.org<mailto:secur...@libreswan.org> CNA Type: Vendor, Open Source Total CNAs: 330 (328 CNAs and 2 CNA-LRs) Total Countries: 37 (+ 1 no country affiliation) Respectfully, CVE Program Secretariat cve-prog-secretar...@mit

** Two New CNAs – Analog Devices and SoftIron **

2023-09-19 Thread CVE Program Secretariat
https://advisories.softiron.cloud/ Public point of contact: cve-coordinat...@softiron.com<mailto:cve-coordinat...@softiron.com> CNA Type: Vendor Total CNAs: 319 (317 CNAs and 2 CNA-LRs) Total Countries: 37 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secret

CVE Board Meeting Notes: September 13, 2023

2023-09-25 Thread CVE Program Secretariat
CVE Board Meeting Notes September 13, 2023 (2:00 pm - 4:00 pm EDT) Agenda * 2:00-2:05Introduction * 2:05-3:25Topics * Board Meeting Times * TWG Proposal for Dates for November Virtual Workshop and Proposed Topics: 1) CVE Services/JSON 5

** Two New CNAs – AlgoSec and Canon EMEA **

2023-09-26 Thread CVE Program Secretariat
pe.com/psirt Advisory location: https://www.canon-europe.com/psirt/advisory-information Public point of contact: product-secur...@canon-europe.com<mailto:product-secur...@canon-europe.com> CNA Type: Vendor Total CNAs: 321 (319 CNAs and 2 CNA-LRs) Total Countries: 37 Respectfully, CVE Program

** Three New CNAs – 1E, Keeper Security, and Lexmark **

2023-10-03 Thread CVE Program Secretariat
securityale...@lexmark.com<mailto:securityale...@lexmark.com> CNA Type: Vendor Total CNAs: 324 (322 CNAs and 2 CNA-LRs) Total Countries: 37 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart D

CVE Board Meeting Notes: September 27, 2023

2023-10-06 Thread CVE Program Secretariat
CVE Board Meeting Notes September 27, 2023 (9:00 am - 11:00 pm EDT) Agenda * 9:00-9:05Introduction * 9:05-10:25 Topics * Working Group Updates * Board Decisions: Use of Board Email List * Workshop: Approve Date (November 15) and

** Three New CNAs – Caliptra Project, PaperCut Software, and Wren Security **

2023-10-17 Thread CVE Program Secretariat
d 2 CNA-LRs) Total Countries: 37 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

CVE Board Meeting Notes: August 16, 2023

2023-08-22 Thread CVE Program Secretariat
CVE Board Meeting Notes August 16, 2023 (2:00 pm – 4:00 pm EDT) Agenda · 2:00-2:05Introduction · 2:05-3:25Topics * Vote Update * Vulnerability Conference Working Group (VCWG) Charter Review · 3:25-3:35Open Discussion ·

** Three New CNAs – Mandiant, Phoenix Technologies, and VULSec Labs **

2023-08-15 Thread CVE Program Secretariat
https://www.vulsec.org/conditions/vulnerability-disclosure-policy Advisory location: https://www.vulsec.org/advisories Public point of contact: https://www.vulsec.org/vulnerability-report CNA Type: Researcher Total CNAs: 312 (310 CNAs and 2 CNA-LRs) Total Countries: 37 Respectfully, CVE Program Secretari

** New CNA - Go Project**

2022-04-26 Thread CVE Program Secretariat
Disclosure Policy location: https://go.dev/security Advisory location: https://pkg.go.dev/vuln/list Public point of contact: secur...@golang.org<mailto:secur...@golang.org> CNA Type: Vendors and Projects Total Partners: 216 Total Countries: 34 Respectfully, CVE Program Secretariat cve-prog-se

Submitting CVE Records after CVE Service 2.x/JSON 5.0 Roll-out

2022-05-20 Thread CVE Program Secretariat
to contact the appropriate CNA to request CVE IDs, as described on the Report/Request<https://www.cve.org/ResourcesSupport/ReportRequest> page on the CVE Program website. The CNA that assigns the ID will publish the CVE Record. In addition, the CVE Program Secretariat will continue to ma

Call for Community Penetration Testing Volunteers to Test CVE Services 2.1

2022-06-27 Thread CVE Program Secretariat
Colleagues, The CVE Program is preparing for the deployment of the CVE Record Submission and Upload Service (RSUS), and an updated data format (i.e., CVE JSON

** Four New CNAs – GE Healthcare, Hitachi Vantara, Hallo Welt!, and SailPoint**

2022-06-22 Thread CVE Program Secretariat
y location: https://www.sailpoint.com/legal/security/ Advisory location: https://www.sailpoint.com/security-advisories/ Public point of contact: ps...@sailpoint.com<mailto:ps...@sailpoint.com> CNA Type: Vendors and Projects Total Partners: 226 Total Countries: 34 Respectfully, CVE Program Secre

** New CNA - Hitachi **

2022-06-07 Thread CVE Program Secretariat
: https://www.hitachi.com/hirt/publications/hirt-pub10008 Advisory location: https://www.hitachi.com/hirt/security/security.html Public point of contact: h...@hitachi.co.jp<mailto:h...@hitachi.co.jp> CNA Type: Vendors and Projects Total Partners: 222 Total Countries: 34 Respectfully, CVE P

** Five New CNAs – Dassault Systèmes, FULL INTERNET, KNIME AG, The Missing Link Australia, National Cyber Security Centre - Netherlands **

2022-07-19 Thread CVE Program Secretariat
https://english.ncsc.nl/contact/reporting-a-vulnerability-cvd (English) Advisory location: https://www.ncsc.nl/actueel/beveiligingsadviezen Public point of contact: c...@ncsc.nl<mailto:c...@ncsc.nl> CNA Type: National and Industry CERTs Total Partners: 232 Total Countries: 35 Respectfully, CVE Pro

** New CNA - openGauss Community **

2022-07-12 Thread CVE Program Secretariat
: https://gitee.com/opengauss/security Public point of contact: securit...@opengauss.org<mailto:securit...@opengauss.org> CNA Type: Vendors and Projects Total Partners: 227 Total Countries: 34 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@

** New CNA - ZUSO Advanced Research Team **

2022-05-03 Thread CVE Program Secretariat
: https://zuso.ai/Policy.html Advisory location: https://zuso.ai/Advisory.html Public point of contact: a...@zuso.ai<mailto:a...@zuso.ai> CNA Type: Vulnerability Researchers Total Partners: 219 Total Countries: 34 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto

** New CNA - OpenAnolis **

2022-05-03 Thread CVE Program Secretariat
Advisory location: https://anas.openanolis.cn/errata Public point of contact: secur...@openanolis.org<mailto:secur...@openanolis.org> CNA Type: Vendors and Projects Total Partners: 219 Total Countries: 34 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog

** New CNA - General Electric (Gas Power) **

2022-05-03 Thread CVE Program Secretariat
es: 34 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** New CNA - Philips **

2022-05-04 Thread CVE Program Secretariat
-disclosure.html Advisory location: https://www.philips.com/a-w/security/security-advisories Public point of contact: productsecur...@philips.com<mailto:productsecur...@philips.com> CNA Type: Vendors and Projects Total Partners: 220 Total Countries: 34 Respectfully, CVE Program Secretariat cv

** New CNA – Rockwell Automation **

2022-08-23 Thread CVE Program Secretariat
es: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** New CNA – The OpenNMS Group **

2022-08-30 Thread CVE Program Secretariat
://www.opennms.com/en/blog/category/blog/ Public point of contact: secur...@opennms.com<mailto:secur...@opennms.com> CNA Type: Vendors and Projects Total Partners: 237 Total Countries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org>

CVE Board Meeting Summary: August 31, 2022

2022-09-06 Thread CVE Program Secretariat
CVE Board Meeting Notes August 31, 2022 (9:00 am – 11:00 am ET) Agenda · 9:00-9:05 Introduction · 9:05-10:25 Topics o Vulnerability "Rythm Nation" o Working Group Updates o PSIRT SIG Technical Colloquium (September 28-29) o CVE Board Response to the

SAVE THE DATE — “CVE Services Workshop” for CNAs to be held on November 2, 2022

2022-08-25 Thread CVE Program Secretariat
ye out. Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** Two New CNAs – Baicells and NetRise **

2022-10-18 Thread CVE Program Secretariat
visory location: https://baicells.zendesk.com/hc/en-us/sections/206436107-Security-Vulnerability-Notices Public point of contact: secur...@baicells.com<mailto:secur...@baicells.com> CNA Type: Vendor and Projects Total Partners: 244 Total Countries: 35 Respectfully, CVE Program Secretar

CVE Board Meeting Summary: October 12, 2022

2022-10-19 Thread CVE Program Secretariat
CVE Board Meeting Notes October 12, 2022 (2:00 pm - 4:00 pm ET) Agenda * 2:00-2:05Introduction * 2:05-3:25Topics o CVE Services 2.1 Soft Deploy Update o Council of Roots Update o Inactive Board Member Update o Update on Workshop Planning *

** Six New CNAs – KrakenD, senhasegura, Seagate, Green Rocket Security, OpenCloudOS, and HashiCorp**

2022-10-25 Thread CVE Program Secretariat
...@hashicorp.com<mailto:secur...@hashicorp.com> CNA Type: Vendors and Projects Total Partners: 250 Total Countries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

Soft Deployment of RSUS/CVE JSON 5.0 Complete: What’s Next for CVE Services/CVE JSON 5.0 Adoption

2022-10-27 Thread CVE Program Secretariat
.0) cve.mitre.org legacy site (JSON 4.0) GitHub CVEList Pilot (JSON 4.0) cve.org website (JSON 4.0) cve.mitre.org legacy site (JSON 4.0) GitHub CVEList Pilot (JSON 4.0) Questions? Please use the CVE Request Web Forms<https://cveform.mitre.org/> and select “Other” from the dropdown. Resp

Deployment Update for CVE Services 2.1 - Record Submission and Upload Service (RSUS) / CVE JSON 5.0

2022-09-12 Thread CVE Program Secretariat
a.m. - 5:00 p.m. ET. Learn more here<https://www.cve.org/Media/News/item/news/2022/08/30/CVE-Services-Workshop-for-CNAs>. If you have any question, please use the CVE Request Web Forms<https://cveform.mitre.org/> and select "Other" from the dropdown. Respectfully, CVE Pr

CVE Program welcomes Red Hat as a new Root

2022-09-08 Thread CVE Program Secretariat
, thereby ensuring that all parties will work together to expedite the assignment of CVE IDs and publication of CVE Records and help improve cybersecurity worldwide. Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** New CNA – Dragos, Inc. **

2022-09-20 Thread CVE Program Secretariat
Total Partners: 238 Total Countries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** Two New CNAs – Bugcrowd and National Cyber Security Centre SK-CERT **

2022-10-11 Thread CVE Program Secretariat
.com> CNA Type: Bug Bounty Programs, Vendor and Projects Total Partners: 242 Total Countries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** Two New CNAs – CyberArk Labs and Dual Vipers **

2022-10-03 Thread CVE Program Secretariat
MITRE Disclosure Policy location: https://advisory.dualvs.com/VDP.html Advisory location: https://advisory.dualvs.com/ Public point of contact: b...@dualvs.com<mailto:b...@dualvs.com> CNA Type: Vendor and Projects, Vulnerability Researchers Total Partners: 240 Total Countries: 35 Respectfully,

Schedule for October Deployment of CVE Services 2.1/CVE JSON 5.0

2022-10-03 Thread CVE Program Secretariat
soon via the CNA Discussion List, so please watch for that email. There is no limit on the number of attendees that can participate from a CNA's organization. Questions? Please use the CVE Request Web Forms<https://cveform.mitre.org/> and select "Other" from the dropdown. Respec

** Three New CNAs – Crestron Electronics, OpenHarmony, and Unisoc **

2022-08-03 Thread CVE Program Secretariat
ation: https://www.unisoc.com/en_us/secy/announcement Public point of contact: secur...@unisoc.com<mailto:secur...@unisoc.com> CNA Type: Vendor and Projects Total Partners: 235 Total Countries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@m

** New CNA – ONEKEY GmbH **

2022-11-01 Thread CVE Program Secretariat
ntries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

Moving Forward on CVE Service/CVE JSON 5.0 Adoption

2022-12-22 Thread CVE Program Secretariat
date. View the current status here<https://cveproject.github.io/automation-transition#current-status>. Questions? Please use the CVE Request Web Forms<https://cveform.mitre.org/> and select "Other" from the dropdown. Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** New CNA – Tribe29 GmbH **

2022-12-28 Thread CVE Program Secretariat
/responsible-disclosure-policy Advisory location: https://checkmk.com/werks Public point of contact: secur...@checkmk.com<mailto:secur...@checkmk.com> CNA Type: Vendor Total Partners: 263 Total Countries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog

CVE Board Meeting Summary: January 4, 2023

2023-01-10 Thread CVE Program Secretariat
CVE Board Meeting Notes January 4, 2023 (2:00 pm - 4:00 pm EST) Agenda * 2:00-2:05Introduction * 2:05-3:25Topics o Working Group Updates o CVE Program and Working Group Priorities for First Half of 2023 o CNA Category Type Definitions o Roots Update o

** New CNA – The HISP Centre at the University of Oslo **

2023-01-10 Thread CVE Program Secretariat
es: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** New CNA – dotCMS LLC **

2023-01-04 Thread CVE Program Secretariat
/latest/known-security-issues Public point of contact: secur...@dotcms.com<mailto:secur...@dotcms.com> CNA Type: Hosted Service Total Partners: 264 Total Countries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A pictur

CVE Board Meeting Summary: November 30, 2022

2022-12-02 Thread CVE Program Secretariat
CVE Board Meeting Notes November 30, 2022 (9:00 am - 11:00 am EST) Agenda * 9:00-9:05Introduction * 9:05-10:25 Topics o Working Group Updates o CVE Annual Report o CVE Summit * 10:25-10:35Open Discussion * 10:35-10:55Review of Action Items

** New CNA – Google Open Source Software **

2022-12-06 Thread CVE Program Secretariat
Total Countries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** New CNA – Canon Inc. **

2022-12-13 Thread CVE Program Secretariat
: https://psirt.canon/vulnerability-disclosure-policy/ Advisory location: https://psirt.canon/advisory-information/ Public point of contact: https://psirt.canon/vulnerability-report-form/ CNA Type: Vendor Total Partners: 262 Total Countries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar

CVE Board Meeting Summary: November 9, 2022

2022-11-18 Thread CVE Program Secretariat
CVE Board Meeting Notes November 9, 2022 (2:00 pm - 4:00 pm EST) Agenda * 2:00-2:05Introduction * 2:05-3:25Topics o CVE Services Workshop Post Discussion and Survey Results o Identify Hardware Vendors Participating in the CVE Program (compare CWE HW SIG

** New CNA – Baidu, Inc. **

2022-11-29 Thread CVE Program Secretariat
ountries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** New CNA – Qualys, Inc. **

2022-11-15 Thread CVE Program Secretariat
es: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** Four New CNAs – Docker, Grafana Labs, Proofpoint, and wolfSSL **

2022-11-22 Thread CVE Program Secretariat
.com/docs/security-vulnerabilities/ Public point of contact: fa...@wolfssl.com<mailto:fa...@wolfssl.com> CNA Type: Vendors Total Partners: 259 Total Countries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A pi

CVE Board Meeting Summary: January 18, 2023

2023-01-24 Thread CVE Program Secretariat
CVE Board Meeting Notes January 18, 2023 (9:00 am - 11:00 am EST) Agenda * 9:00-9:05Introduction * 9:05-10:25 Topics o Voting updates (deprecation of download formats, Transition Working Group) o CVE Program priorities for the first half of 2023 *

** New CNA – National Instruments **

2023-01-18 Thread CVE Program Secretariat
: https://www.ni.com/en-us/support/documentation/supplemental/11/available-critical-and-security-updates-for-ni-software.html Public point of contact: secur...@ni.com<mailto:secur...@ni.com> CNA Type: Vendor Total Partners: 266 Total Countries: 35 Respectfully, CVE Program Secretariat cv

** Three New CNAs – Honeywell, Honor, and Zowe **

2022-11-08 Thread CVE Program Secretariat
ilto:zowe-secur...@lists.openmainframeproject.org> CNA Type: Vendors and Projects Total Partners: 254 Total Countries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

CVE Board Meeting Summary: October 26, 2022

2022-11-03 Thread CVE Program Secretariat
CVE Board Meeting Notes October 26, 2022 (9:00 am – 11:00 am EDT) Agenda · 9:00-9:05Introduction · 9:05-10:25 Topics o WG Updates o Welcome New Board Member · 10:25-10:35Open Discussion · 10:35-10:55Review of Action Items · 10:55-11:00

Workshop Videos and Slides - CVE Services 2.1

2022-11-14 Thread CVE Program Secretariat
Greetings Colleagues, We’ve posted videos of the November 2nd, CVE Services 2.1 Workshop on the CVE YouTube channel. Here’s a link to the playlist. We’d emailed the slide deck out after the event, but here’s a link to

** New CNA – IDEMIA **

2023-03-08 Thread CVE Program Secretariat
:ps...@idemia.com> CNA Type: Vendor, Researcher Total Partners: 277 Total Countries: 36 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

CVE Services/CVE JSON 5.0 Hard Deploy Update

2023-03-06 Thread CVE Program Secretariat
follow-up messages you received for meeting details. We look forward to seeing everyone in person! Questions? Please use the CVE Request Web Forms<https://cveform.mitre.org/> and select "Other" from the dropdown. Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** New CNA – Glyph & Cog, LLC **

2023-03-14 Thread CVE Program Secretariat
licy location: https://www.xpdfreader.com/disclosure.html Advisory location: https://www.xpdfreader.com/security-fixes.html Public point of contact: x...@xpdfreader.com<mailto:x...@xpdfreader.com> CNA Type: Vendor, Open Source Total Partners: 278 Total Countries: 36 Respectfully, C

CVE Board Meeting Notes: March 1, 2023

2023-03-14 Thread CVE Program Secretariat
CVE Board Meeting Notes March 1, 2023 (2:00 pm – 4:00 pm EST) Agenda · 2:00-2:05Introduction · 2:05-3:25Topics * Working Group Updates (WG Chairs) * Council of Roots Update (Dave Morse) * 2023 Global Summit Agenda (Dave Morse)

CVE Board Meeting Summary: February 15, 2023

2023-02-21 Thread CVE Program Secretariat
CVE Board Meeting Notes February 15, 2023 (9:00 am – 11:00 am EST) Agenda · 9:00-9:05Introduction · 9:05-10:25 Topics * Summit Agenda * Bulk Download Response from Community about Reserved IDs * Finalize 2023 CVE Program

** Five New CNAs – Hillstone Networks, Open-Xchange, ServiceNow, Shop Beat, and STAR Labs**

2023-02-21 Thread CVE Program Secretariat
ion: https://starlabs.sg/advisories/ Public point of contact: i...@starlabs.sg<mailto:i...@starlabs.sg> CNA Type: Researcher Total Partners: 275 Total Countries: 36 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture c

** New CNA – WatchGuard **

2023-02-28 Thread CVE Program Secretariat
tfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** Two New CNAs – 42Gears and Ribose **

2023-04-25 Thread CVE Program Secretariat
https://open.ribose.com/advisories/ Public point of contact: cve-coordinat...@ribose.com<mailto:cve-coordinat...@ribose.com> CNA Type: Hosted Service, Open Source, Vendor Total Partners: 287 Total Countries: 36 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cv

CVE Board Meeting Notes: April 12, 2023

2023-04-19 Thread CVE Program Secretariat
CVE Board Meeting Notes April 12, 2023 (9:00 am - 11:00 am EDT) Agenda * 9:00-9:05Introduction * 9:05-10:25 Topics * Relationship between Vendor CNAs and Bug Bounty CNAs: Scopes and Policies * Update CISA ICS Scope to include U.S. Federal

CVE Board Meeting Notes: March 15, 2023

2023-03-28 Thread CVE Program Secretariat
CVE Board Meeting Notes March 15, 2023 (9:00 am – 11:00 am EDT) Agenda · 9:00-9:05Introduction · 9:05-10:25 Topics * Modification of Historical Records * CVE Services Status re: Hard Deploy * Summit: Final Details (e.g., agenda,

** Three New CNAs – CyberDanube, Liferay, and Securifera **

2023-03-28 Thread CVE Program Secretariat
a.com> CNA Type: Researcher Total Partners: 281 Total Countries: 36 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

Hard Deploy of CVE Services, CVE JSON 5.0, and Bulk Downloads in CVE JSON 5.0 Format Now in Effect

2023-03-30 Thread CVE Program Secretariat
rmats may no longer work once the old formats have been deprecated, so organizations should take action now. Questions? Please use the CVE Request Web Forms<https://cveform.mitre.org/> and select "Other" from the dropdown. Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** Two New CNAs – Halborn and VulnCheck **

2023-04-11 Thread CVE Program Secretariat
https://vulncheck.com/advisories Public point of contact: disclos...@vulncheck.com<mailto:disclos...@vulncheck.com> CNA Type: Bug Bounty Provider, Researcher Total Partners: 285 Total Countries: 36 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secret

** Two New CNAs – Schweitzer Engineering Laboratories and StrongDM **

2023-04-04 Thread CVE Program Secretariat
s: 283 Total Countries: 36 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

CVE Board Meeting Notes: March 29, 2023

2023-04-06 Thread CVE Program Secretariat
CVE Board Meeting Notes March 29, 2023 (2:00 pm - 4:00 pm EDT) Agenda * 2:00-2:05Introduction * 2:05-3:25Topics * Council of Roots Update * Working Group Updates * Summit Takeaways * KEV Data Addition to the Corpus

** New CNA – Genetec Inc. **

2023-01-31 Thread CVE Program Secretariat
Advisory location: https://resources.genetec.com/security-advisories Public point of contact: secur...@genetec.com<mailto:secur...@genetec.com> CNA Type: Hosted Service, Vendor Total Partners: 267 Total Countries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<m

CVE Board Meeting Summary: February 1, 2023

2023-02-07 Thread CVE Program Secretariat
CVE Board Meeting Notes February 1, 2023 (2:00 pm – 4:00 pm EST) Agenda · 2:00-2:05Introduction · 2:05-3:25Topics o GDPR Conclusion o Council of Roots Update o Working Groups Updates o CVE Program Priorities for the First Half of 2023 (cont.) o CVE

** New CNA – Austin Hackers Anonymous **

2023-02-07 Thread CVE Program Secretariat
archer Total Partners: 268 Total Countries: 35 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** Two New CNAs – B. Braun and Exodus Intelligence **

2023-02-14 Thread CVE Program Secretariat
losure-policy/ Advisory location: https://blog.exodusintel.com/advisories/ Public point of contact: disclosu...@exodusintel.com<mailto:disclosu...@exodusintel.com> CNA Type: Bug Bounty Provider, Researcher Total Partners: 270 Total Countries: 35 Respectfully, CVE Program Secretariat cve-p

** New CNA – Solidigm **

2023-05-02 Thread CVE Program Secretariat
-security.html Advisory location: https://www.solidigm.com/support-page/support-security.html Public point of contact: secur...@solidigm.com<mailto:secur...@solidigm.com> CNA Type: Hosted Service Total Partners: 288 Total Countries: 36 Respectfully, CVE Program Secretariat cve-prog-secretar...@mit

CVE Board Meeting Notes: July 21, 2023

2023-07-07 Thread CVE Program Secretariat
CVE Board Meeting Notes June 21, 2023 (2:00 pm - 4:00 pm EDT) Agenda * 2:00-2:05Introduction * 2:05-3:25Topics * Working Group Updates * Council of Roots Update * Communicating the Deprecation of Legacy Download Formats *

** Three New CNAs – CrowdStrike, Hanwha Vision, and ID Business Solutions **

2023-07-18 Thread CVE Program Secretariat
Public point of contact: https://idbs.my.site.com/ CNA Type: Vendor Total Partners: 307 Total Countries: 36 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

** New CNA – MIM Software **

2023-07-11 Thread CVE Program Secretariat
cur...@mimsoftware.com> CNA Type: Vendor Total Partners: 304 Total Countries: 36 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

CVE Board Meeting Notes: May 24

2023-06-05 Thread CVE Program Secretariat
CVE Board Meeting Notes May 24, 2023 (2:00 pm - 4:00 pm EDT) Agenda * 2:00-2:05Introduction * 2:05-3:25Topics * Working Group Updates * ADP Pilot * Summit Planning Sub-Working Group * GitHub Pilot Retirement *

** Two New CNAs – AMI and Temporal Technologies **

2023-05-23 Thread CVE Program Secretariat
-security Advisory location: https://docs.temporal.io/temporal-technologies-inc-security Public point of contact: secur...@temporal.io<mailto:secur...@temporal.io> CNA Type: Hosted Service, Open Source Total Partners: 294 Total Countries: 36 Respectfully, CVE Program Secretariat cve-pr

** New CNA – Payara **

2023-05-31 Thread CVE Program Secretariat
es: 36 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org> [A picture containing text, clipart Description automatically generated]

CVE Blog – "CVE Program Report for Quarter 1 Calendar Year (Q1 CY) 2023"

2023-05-31 Thread CVE Program Secretariat
https://twitter.com/CVEannounce/status/1664034370775138306 Linkedin – https://www.linkedin.com/feed/update/urn:li:activity:7069801660188950528 Medium – https://twitter.com/CVEannounce/status/1664034370775138306 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog

CVE Board Meeting Notes: July 19, 2023

2023-07-26 Thread CVE Program Secretariat
CVE Board Meeting Notes July 19, 2023 (2:00 pm - 4:00 pm EDT) Agenda * 2:00-2:05Introduction * 2:05-3:25Topics * CISA ICS Top-Level Root Name, Scope, and Structure Change * AI/ML Vulnerabilities * 3:25-3:35Open Discussion *

** Two New CNAs – CERT.PL and Progress Software Corporation **

2023-08-01 Thread CVE Program Secretariat
ry location: https://community.progress.com/s/ Public point of contact: secur...@progress.com<mailto:secur...@progress.com> CNA Type: Vendor Total CNAs: 309 Total Countries: 37 Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cve-prog-secretar...@mitre.org&g

CNA Best Practices—"CVE Record Management Guidelines"

2023-07-26 Thread CVE Program Secretariat
CVE-Record-Management-Guidelines.pdf>. Questions? If you have any comments or concerns, please use the CVE Program Request forms<https://cveform.mitre.org/> and select “Other” from the dropdown menu. Respectfully, CVE Program Secretariat cve-prog-secretar...@mitre.org<mailto:cv

  1   2   >