Skip to content

Commit 228da01

Browse files
committed
3/17/26 release
1 parent 4d5e76a commit 228da01

4 files changed

Lines changed: 100 additions & 57 deletions

File tree

src/assets/data/CNAsList.json

Lines changed: 56 additions & 56 deletions
Original file line numberDiff line numberDiff line change
@@ -7955,62 +7955,6 @@
79557955
},
79567956
"country": "Spain"
79577957
},
7958-
{
7959-
"shortName": "Splunk",
7960-
"cnaID": "CNA-2019-0012",
7961-
"organizationName": "Splunk Inc.",
7962-
"scope": "Splunk products only.",
7963-
"contact": [
7964-
{
7965-
"email": [
7966-
{
7967-
"label": "Email",
7968-
"emailAddr": "prodsec@splunk.com"
7969-
}
7970-
],
7971-
"contact": [],
7972-
"form": []
7973-
}
7974-
],
7975-
"disclosurePolicy": [
7976-
{
7977-
"label": "Policy",
7978-
"language": "",
7979-
"url": "https://www.splunk.com/page/securityportal"
7980-
}
7981-
],
7982-
"securityAdvisories": {
7983-
"alerts": [],
7984-
"advisories": [
7985-
{
7986-
"label": "Advisories",
7987-
"url": "https://www.splunk.com/page/securityportal"
7988-
}
7989-
]
7990-
},
7991-
"resources": [],
7992-
"CNA": {
7993-
"isRoot": false,
7994-
"root": {
7995-
"shortName": "n/a",
7996-
"organizationName": "n/a"
7997-
},
7998-
"type": [
7999-
"Vendor"
8000-
],
8001-
"TLR": {
8002-
"shortName": "mitre",
8003-
"organizationName": "MITRE Corporation"
8004-
},
8005-
"roles": [
8006-
{
8007-
"helpText": "",
8008-
"role": "CNA"
8009-
}
8010-
]
8011-
},
8012-
"country": "USA"
8013-
},
80147958
{
80157959
"shortName": "suse",
80167960
"cnaID": "CNA-2014-0003",
@@ -28584,5 +28528,61 @@
2858428528
]
2858528529
},
2858628530
"country": "Uzbekistan"
28531+
},
28532+
{
28533+
"shortName": "BombadilSystems",
28534+
"cnaID": "CNA-2026-0014",
28535+
"organizationName": "Bombadil Systems LLC",
28536+
"scope": "Vulnerabilities in third-party software discovered by Bombadil Systems that are not in another CNA’s scope.",
28537+
"contact": [
28538+
{
28539+
"email": [
28540+
{
28541+
"label": "Email",
28542+
"emailAddr": "cve@bombadil.systems"
28543+
}
28544+
],
28545+
"contact": [],
28546+
"form": []
28547+
}
28548+
],
28549+
"disclosurePolicy": [
28550+
{
28551+
"label": "Policy",
28552+
"language": "",
28553+
"url": "https://bombadil.systems/disclosure.html"
28554+
}
28555+
],
28556+
"securityAdvisories": {
28557+
"alerts": [],
28558+
"advisories": [
28559+
{
28560+
"label": "Advisories",
28561+
"url": "https://bombadil.systems/advisories.html"
28562+
}
28563+
]
28564+
},
28565+
"resources": [],
28566+
"CNA": {
28567+
"isRoot": false,
28568+
"root": {
28569+
"shortName": "n/a",
28570+
"organizationName": "n/a"
28571+
},
28572+
"roles": [
28573+
{
28574+
"helpText": "",
28575+
"role": "CNA"
28576+
}
28577+
],
28578+
"TLR": {
28579+
"shortName": "mitre",
28580+
"organizationName": "MITRE Corporation"
28581+
},
28582+
"type": [
28583+
"Researcher"
28584+
]
28585+
},
28586+
"country": "USA"
2858728587
}
2858828588
]

src/assets/data/boardMeetings.json

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,9 @@
11
{
22
"2026": [
3+
{
4+
"name": "February 4, 2026 - teleconference",
5+
"path": "msg00317.html"
6+
},
37
{
48
"name": "January 21, 2026 - teleconference",
59
"path": "msg00314.html"

src/assets/data/metrics.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1180,7 +1180,7 @@
11801180
},
11811181
{
11821182
"month": "March",
1183-
"value": "2"
1183+
"value": "3"
11841184
},
11851185
{
11861186
"month": "April",

src/assets/data/news.json

Lines changed: 39 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,46 @@
11
{
22
"currentNews": [
3+
{
4+
"id": 640,
5+
"newsType": "news",
6+
"title": "Bombadil Systems Added as CVE Numbering Authority (CNA)",
7+
"urlKeywords": "Bombadil Systems Added as CNA",
8+
"date": "2026-03-17",
9+
"description": [
10+
{
11+
"contentnewsType": "paragraph",
12+
"content": "<a href='/PartnerInformation/ListofPartners/partner/BombadilSystems'>Bombadil Systems LLC</a> is now a <a href='/ResourcesSupport/Glossary?activeTerm=glossaryCNA'>CVE Numbering Authority (CNA)</a> for vulnerabilities in third-party software discovered by Bombadil Systems that are not in another CNA’s scope."
13+
},
14+
{
15+
"contentnewsType": "paragraph",
16+
"content": "To date, <a href='/PartnerInformation/ListofPartners'>497 CNAs</a> (494 CNAs and 3 CNA-LRs) from <a href='/ProgramOrganization/CNAs'>42 countries</a> and 1 no country affiliation have partnered with the CVE Program. CNAs are organizations from around the world that are authorized to assign <a href='/ResourcesSupport/Glossary?activeTerm=glossaryCVEID'>CVE Identifiers (CVE IDs)</a> and publish <a href='/ResourcesSupport/Glossary?activeTerm=glossaryRecord'>CVE Records</a> for vulnerabilities affecting products within their distinct, agreed-upon scope, for inclusion in first-time public announcements of new vulnerabilities. Bombadil Systems is the 266th CNA from USA."
17+
},
18+
{
19+
"contentnewsType": "paragraph",
20+
"content": "Bombadil Systems’ Root is the <a href='/PartnerInformation/ListofPartners/partner/mitre'>MITRE TL-Root</a>."
21+
}
22+
]
23+
},
24+
{
25+
"id": 639,
26+
"newsType": "news",
27+
"title": "Minutes from CVE Board Teleconference Meeting on February 4 Now Available",
28+
"urlKeywords": "CVE Board Minutes from February 4",
29+
"date": "2026-03-17",
30+
"description": [
31+
{
32+
"contentnewsType": "paragraph",
33+
"content": "The <a href='/ProgramOrganization/Board'>CVE Board</a> held a teleconference meeting on February 4, 2026. Read the <a href='https://www.mail-archive.com/cve-editorial-board-list@mitre.org/msg00317.html' target='_blank'>meeting minutes summary</a>."
34+
},
35+
{
36+
"contentnewsType": "paragraph",
37+
"content": "The CVE Board is the organization responsible for the strategic direction, governance, operational structure, policies, and rules of the CVE Program. The Board includes members from numerous cybersecurity-related organizations including commercial security tool vendors, academia, research institutions, government departments and agencies, and other prominent security experts, as well as end-users of vulnerability information."
38+
}
39+
]
40+
},
341
{
442
"id": 638,
43+
"displayOnHomepageOrder": 1,
544
"newsType": "blog",
645
"title": "Full Agenda Now Available for <i>CVE/FIRST VulnCon 2026</i> on April 13-16, 2026!",
746
"urlKeywords": "Full Agenda for VulnCon 2026",

0 commit comments

Comments
 (0)