|
1 | 1 | { |
2 | 2 | "currentNews": [ |
| 3 | + { |
| 4 | + "id": 541, |
| 5 | + "newsType": "news", |
| 6 | + "title": "Fermax Added as CVE Numbering Authority (CNA)", |
| 7 | + "urlKeywords": "Fermax Added as CNA", |
| 8 | + "date": "2025-07-01", |
| 9 | + "description": [ |
| 10 | + { |
| 11 | + "contentnewsType": "paragraph", |
| 12 | + "content": "<a href='/PartnerInformation/ListofPartners/partner/FERMAX'>Fermax Technologies SLU</a> is now a <a href='/ResourcesSupport/Glossary?activeTerm=glossaryCNA'>CVE Numbering Authority (CNA)</a> for vulnerabilities discovered in the services and applications of the MeetMe and DuoxMe products that are not covered by another CNA’s scope." |
| 13 | + }, |
| 14 | + { |
| 15 | + "contentnewsType": "paragraph", |
| 16 | + "content": "To date, <a href='/PartnerInformation/ListofPartners'>456 CNAs</a> (453 CNAs and 3 CNA-LRs) from <a href='/ProgramOrganization/CNAs'>40 countries</a> and 1 no country affiliation have partnered with the CVE Program. CNAs are organizations from around the world that are authorized to assign <a href='/ResourcesSupport/Glossary?activeTerm=glossaryCVEID'>CVE Identifiers (CVE IDs)</a> and publish <a href='/ResourcesSupport/Glossary?activeTerm=glossaryRecord'>CVE Records</a> for vulnerabilities affecting products within their distinct, agreed-upon scope, for inclusion in first-time public announcements of new vulnerabilities. Fermax is the 9th CNA from Spain." |
| 17 | + }, |
| 18 | + { |
| 19 | + "contentnewsType": "paragraph", |
| 20 | + "content": "Fermax’s Root is the <a href='/PartnerInformation/ListofPartners/partner/INCIBE'>Spanish National Cybersecurity Institute (INCIBE) Root</a>." |
| 21 | + } |
| 22 | + ] |
| 23 | + }, |
| 24 | + { |
| 25 | + "id": 540, |
| 26 | + "newsType": "news", |
| 27 | + "title": "Maritime Hacking Village Added as CVE Numbering Authority (CNA)", |
| 28 | + "urlKeywords": "Maritime Hacking Village Added as CNA", |
| 29 | + "date": "2025-07-01", |
| 30 | + "description": [ |
| 31 | + { |
| 32 | + "contentnewsType": "paragraph", |
| 33 | + "content": "<a href='/PartnerInformation/ListofPartners/partner/MHV'>Maritime Hacking Village</a> is now a <a href='/ResourcesSupport/Glossary?activeTerm=glossaryCNA'>CVE Numbering Authority (CNA)</a> for vulnerabilities discovered by researchers in collaboration with Maritime Hacking Village that are not in another CNA’s scope." |
| 34 | + }, |
| 35 | + { |
| 36 | + "contentnewsType": "paragraph", |
| 37 | + "content": "To date, <a href='/PartnerInformation/ListofPartners'>455 CNAs</a> (452 CNAs and 3 CNA-LRs) from <a href='/ProgramOrganization/CNAs'>40 countries</a> and 1 no country affiliation have partnered with the CVE Program. CNAs are organizations from around the world that are authorized to assign <a href='/ResourcesSupport/Glossary?activeTerm=glossaryCVEID'>CVE Identifiers (CVE IDs)</a> and publish <a href='/ResourcesSupport/Glossary?activeTerm=glossaryRecord'>CVE Records</a> for vulnerabilities affecting products within their distinct, agreed-upon scope, for inclusion in first-time public announcements of new vulnerabilities. Maritime Hacking Village is the 249th CNA from USA." |
| 38 | + }, |
| 39 | + { |
| 40 | + "contentnewsType": "paragraph", |
| 41 | + "content": "Maritime Hacking Village’s Root is the <a href='/PartnerInformation/ListofPartners/partner/icscert'>CISA ICS Root</a>." |
| 42 | + } |
| 43 | + ] |
| 44 | + }, |
| 45 | + { |
| 46 | + "id": 539, |
| 47 | + "newsType": "news", |
| 48 | + "title": "New “CVE Consumer Working Group” Open to the Public", |
| 49 | + "urlKeywords": "New CVE Consumer WG", |
| 50 | + "date": "2025-07-01", |
| 51 | + "description": [ |
| 52 | + { |
| 53 | + "contentnewsType": "paragraph", |
| 54 | + "content": "The CVE Program’s newest public working group (WG), the <a href='/ProgramOrganization/WorkingGroups#CVEConsumerWorkingGroupCWG'>CVE Consumer Working Group (CWG)</a>, will serve as a dedicated forum for representing the perspectives of end-consumers of <a href='/ResourcesSupport/Glossary?activeTerm=glossaryCVEList'>CVE List</a> data, such as enterprises, security teams, vulnerability analysts, government agencies, managed security service providers (MSSPs), academic researchers, software vendors and tool developers who rely on CVE data to support decision-making, operational defense, and risk management. The CWG will identify consumer needs, evaluate the usability of CVE data, and recommend improvements to ensure that the CVE Program remains aligned with real-world use cases." |
| 55 | + }, |
| 56 | + { |
| 57 | + "contentnewsType": "paragraph", |
| 58 | + "content": "The CWG is open to external stakeholders who consume and work with CVE data, as well as <a href='/ProgramOrganization/Board'>CVE Board</a> members, <a href='/ProgramOrganization/CNAs'>CVE Numbering Authorities (CNAs)</a>, and <a href='/ProgramOrganization/ADPs'>Authorized Data Publishers (ADPs)</a>. Individuals with relevant perspectives on CVE consumption are encouraged to participate." |
| 59 | + }, |
| 60 | + { |
| 61 | + "contentnewsType": "paragraph", |
| 62 | + "content": "Request to join the CWG <a href='/ProgramOrganization/WorkingGroups#cve-how-to-join'>here</a>." |
| 63 | + } |
| 64 | + ] |
| 65 | + }, |
| 66 | + { |
| 67 | + "id": 538, |
| 68 | + "newsType": "news", |
| 69 | + "title": "CVE Program Adds “Researcher Working Group” for Researcher and Bug Bounty CNAs", |
| 70 | + "urlKeywords": "CVE Program Adds Researcher WG for CNAs", |
| 71 | + "date": "2025-07-01", |
| 72 | + "description": [ |
| 73 | + { |
| 74 | + "contentnewsType": "paragraph", |
| 75 | + "content": "The CVE Program has added a new working group (WG), the <a href='/ProgramOrganization/WorkingGroups#ResearcherWorkingGroupRWG'>Researcher Working Group (RWG)</a>, with the purpose of giving voice to, and establishing working norms for, the extended community of designated Researcher <a href='/ProgramOrganization/CNAs'>CVE Numbering Authorities (CNAs)</a>. This includes providing guidance and advice to the research community, as well as other research community activities designed to promote the CVE Program." |
| 76 | + }, |
| 77 | + { |
| 78 | + "contentnewsType": "paragraph", |
| 79 | + "content": "In order to build and preserve a “TLP: Amber” level of trust among working group participants, membership to the group is limited to representatives of currently active <a href='/ProgramOrganization/CNAs'>CNAs</a> that are designated as either research CNAs or bug bounty CNAs, as designated by the CVE Program <a href='/ResourcesSupport/Glossary?activeTerm=glossarySecretariat'>Secretariat</a>, as well as their respective <a href='/ResourcesSupport/Glossary?activeTerm=glossaryRoot'>Roots</a> and the <a href='/ProgramOrganization/Board'>CVE Board</a>. From time to time, individuals not associated with research or bug bounty CNAs may also be invited to join upon reaching consensus of the existing membership. There is no limit to the number of representatives a given CNA may have as members of the group." |
| 80 | + }, |
| 81 | + { |
| 82 | + "contentnewsType": "paragraph", |
| 83 | + "content": "Researcher CNAs may request to join the RWG <a href='/ProgramOrganization/WorkingGroups#cve-how-to-join'>here</a>." |
| 84 | + } |
| 85 | + ] |
| 86 | + }, |
3 | 87 | { |
4 | 88 | "id": 537, |
5 | 89 | "newsType": "news", |
|
13 | 97 | }, |
14 | 98 | { |
15 | 99 | "contentnewsType": "paragraph", |
16 | | - "content": "To date, <a href='/PartnerInformation/ListofPartners'>455 CNAs</a> (452 CNAs and 3 CNA-LRs) from <a href='/ProgramOrganization/CNAs'>40 countries</a> and 1 no country affiliation have partnered with the CVE Program. CNAs are organizations from around the world that are authorized to assign <a href='/ResourcesSupport/Glossary?activeTerm=glossaryCVEID'>CVE Identifiers (CVE IDs)</a> and publish <a href='/ResourcesSupport/Glossary?activeTerm=glossaryRecord'>CVE Records</a> for vulnerabilities affecting products within their distinct, agreed-upon scope, for inclusion in first-time public announcements of new vulnerabilities. Toreon is the 4th CNA from Belgium." |
| 100 | + "content": "To date, <a href='/PartnerInformation/ListofPartners'>454 CNAs</a> (451 CNAs and 3 CNA-LRs) from <a href='/ProgramOrganization/CNAs'>40 countries</a> and 1 no country affiliation have partnered with the CVE Program. CNAs are organizations from around the world that are authorized to assign <a href='/ResourcesSupport/Glossary?activeTerm=glossaryCVEID'>CVE Identifiers (CVE IDs)</a> and publish <a href='/ResourcesSupport/Glossary?activeTerm=glossaryRecord'>CVE Records</a> for vulnerabilities affecting products within their distinct, agreed-upon scope, for inclusion in first-time public announcements of new vulnerabilities. Toreon is the 4th CNA from Belgium." |
17 | 101 | }, |
18 | 102 | { |
19 | 103 | "contentnewsType": "paragraph", |
|
74 | 158 | }, |
75 | 159 | { |
76 | 160 | "id": 534, |
77 | | - "displayOnHomepageOrder": 1, |
78 | 161 | "newsType": "blog", |
79 | 162 | "title": "“CVE List Keyword Search” on CVE.ORG Website Updated", |
80 | 163 | "urlKeywords": "CVE List Keyword Search Updated", |
|
0 commit comments