Skip to content

Commit 4f213eb

Browse files
authored
1/13/26 1 release branch (#3817)
* #3816 News article & Archive item @ 12/10/25 board minutes summary * #3815 Add 5 new CNAs + Update 2 CNA's info
1 parent 44e9d80 commit 4f213eb

4 files changed

Lines changed: 463 additions & 2 deletions

File tree

src/assets/data/CNAsList.json

Lines changed: 283 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -809,7 +809,7 @@
809809
"shortName": "Axis",
810810
"cnaID": "CNA-2021-0014",
811811
"organizationName": "Axis Communications AB",
812-
"scope": "All products of Axis Communications AB and 2N including end-of-life/end-of-service products.",
812+
"scope": "All products of Axis Communications AB including end-of-life/end-of-service products.",
813813
"contact": [
814814
{
815815
"email": [
@@ -17955,7 +17955,7 @@
1795517955
"shortName": "Canon_EMEA",
1795617956
"cnaID": "CNA-2023-0061",
1795717957
"organizationName": "Canon EMEA",
17958-
"scope": "Products, services, and solutions developed by Canon EMEA, Canon USA Inc., and those from Canon Production Printing, IRIS, NT-ware, Onyx Graphics Inc., and Therefore Corporation, which are not under the Canon Brand.",
17958+
"scope": "Products, services, and solutions developed by Canon EMEA, Canon USA Inc., and those from IRIS, NT-ware, Onyx Graphics Inc., and Therefore Corporation, which are not under the Canon Brand.",
1795917959
"contact": [
1796017960
{
1796117961
"email": [
@@ -27852,5 +27852,286 @@
2785227852
]
2785327853
},
2785427854
"country": "USA"
27855+
},
27856+
{
27857+
"shortName": "Hackrate",
27858+
"cnaID": "CNA-2026-0001",
27859+
"organizationName": "Hackrate Kft.",
27860+
"scope": "Vulnerabilities that are discovered, validated, and coordinated through the Hackrate Ethical Hacking Platform, including: software, web applications, APIs, and cloud services; vulnerabilities validated and triaged by our internal security team; and findings disclosed under our coordination that are not in another CNA’s scope.",
27861+
"contact": [
27862+
{
27863+
"email": [
27864+
{
27865+
"label": "Email",
27866+
"emailAddr": "cve-coordination@hckrt.com"
27867+
}
27868+
],
27869+
"contact": [],
27870+
"form": []
27871+
}
27872+
],
27873+
"disclosurePolicy": [
27874+
{
27875+
"label": "Policy",
27876+
"language": "",
27877+
"url": "https://hckrt.com/vdp/disclosure-guidelines"
27878+
}
27879+
],
27880+
"securityAdvisories": {
27881+
"alerts": [],
27882+
"advisories": [
27883+
{
27884+
"label": "Advisories",
27885+
"url": "https://www.hckrt.com/hacktivity"
27886+
}
27887+
]
27888+
},
27889+
"resources": [],
27890+
"CNA": {
27891+
"isRoot": false,
27892+
"root": {
27893+
"shortName": "icscert",
27894+
"organizationName": "Cybersecurity and Infrastructure Security Agency (CISA) Industrial Control Systems (ICS)"
27895+
},
27896+
"type": [
27897+
"Bug Bounty Provider"
27898+
],
27899+
"TLR": {
27900+
"shortName": "CISA",
27901+
"organizationName": "Cybersecurity and Infrastructure Security Agency (CISA)"
27902+
},
27903+
"roles": [
27904+
{
27905+
"helpText": "",
27906+
"role": "CNA"
27907+
}
27908+
]
27909+
},
27910+
"country": "Hungary"
27911+
},
27912+
{
27913+
"shortName": "NIBEGroup",
27914+
"cnaID": "CNA-2026-0002",
27915+
"organizationName": "NIBE Group",
27916+
"scope": "Products, services, and solutions developed or sold by NIBE Industrier AB or any of its subsidiaries; open-source projects owned by NIBE Industrier AB or any of its subsidiaries; vulnerabilities in third-party products used by NIBE Industrier AB or any of its subsidiaries which are outside the scope of another CNA; and subsidiaries of NIBE Industrier AB are listed on <a href='https://www.nibe.com' target='_blank'>https://www.nibe.com</a>.",
27917+
"contact": [
27918+
{
27919+
"email": [
27920+
{
27921+
"label": "Email",
27922+
"emailAddr": "vulnerability@nibegroup.com"
27923+
}
27924+
],
27925+
"contact": [],
27926+
"form": []
27927+
}
27928+
],
27929+
"disclosurePolicy": [
27930+
{
27931+
"label": "Policy",
27932+
"language": "",
27933+
"url": "https://vdp.nibegroup.com"
27934+
}
27935+
],
27936+
"securityAdvisories": {
27937+
"alerts": [],
27938+
"advisories": [
27939+
{
27940+
"label": "Advisories",
27941+
"url": "https://vdp.nibegroup.com"
27942+
}
27943+
]
27944+
},
27945+
"resources": [],
27946+
"CNA": {
27947+
"isRoot": false,
27948+
"root": {
27949+
"shortName": "icscert",
27950+
"organizationName": "Cybersecurity and Infrastructure Security Agency (CISA) Industrial Control Systems (ICS)"
27951+
},
27952+
"type": [
27953+
"Vendor"
27954+
],
27955+
"TLR": {
27956+
"shortName": "CISA",
27957+
"organizationName": "Cybersecurity and Infrastructure Security Agency (CISA)"
27958+
},
27959+
"roles": [
27960+
{
27961+
"helpText": "",
27962+
"role": "CNA"
27963+
}
27964+
]
27965+
},
27966+
"country": "Sweden"
27967+
},
27968+
{
27969+
"shortName": "Vantive",
27970+
"cnaID": "CNA-2026-0003",
27971+
"organizationName": "Vantive",
27972+
"scope": "Vantive’s commercially available products only.",
27973+
"contact": [
27974+
{
27975+
"email": [
27976+
{
27977+
"label": "Email",
27978+
"emailAddr": "global.corp.product.security@vantive.com"
27979+
}
27980+
],
27981+
"contact": [],
27982+
"form": []
27983+
}
27984+
],
27985+
"disclosurePolicy": [
27986+
{
27987+
"label": "Policy",
27988+
"language": "",
27989+
"url": "https://www.vantive.com/contact-support/security-updates"
27990+
}
27991+
],
27992+
"securityAdvisories": {
27993+
"alerts": [],
27994+
"advisories": [
27995+
{
27996+
"label": "Advisories",
27997+
"url": "https://www.vantive.com/contact-support/security-updates"
27998+
}
27999+
]
28000+
},
28001+
"resources": [],
28002+
"CNA": {
28003+
"isRoot": false,
28004+
"root": {
28005+
"shortName": "icscert",
28006+
"organizationName": "Cybersecurity and Infrastructure Security Agency (CISA) Industrial Control Systems (ICS)"
28007+
},
28008+
"type": [
28009+
"Vendor"
28010+
],
28011+
"TLR": {
28012+
"shortName": "CISA",
28013+
"organizationName": "Cybersecurity and Infrastructure Security Agency (CISA)"
28014+
},
28015+
"roles": [
28016+
{
28017+
"helpText": "",
28018+
"role": "CNA"
28019+
}
28020+
]
28021+
},
28022+
"country": "USA"
28023+
},
28024+
{
28025+
"shortName": "ByteDance",
28026+
"cnaID": "CNA-2026-0004",
28027+
"organizationName": "ByteDance, Ltd.",
28028+
"scope": "ByteDance issues only.",
28029+
"contact": [
28030+
{
28031+
"email": [
28032+
{
28033+
"label": "Email",
28034+
"emailAddr": "src@bytedance.com"
28035+
}
28036+
],
28037+
"contact": [],
28038+
"form": []
28039+
}
28040+
],
28041+
"disclosurePolicy": [
28042+
{
28043+
"label": "Policy",
28044+
"language": "",
28045+
"url": "https://bytedance.larkoffice.com/docx/DmandP3o9oEQBdx0fkycqMHNnPd"
28046+
}
28047+
],
28048+
"securityAdvisories": {
28049+
"alerts": [],
28050+
"advisories": [
28051+
{
28052+
"label": "Advisories",
28053+
"url": "https://src.bytedance.com/announcement"
28054+
}
28055+
]
28056+
},
28057+
"resources": [],
28058+
"CNA": {
28059+
"isRoot": false,
28060+
"root": {
28061+
"shortName": "n/a",
28062+
"organizationName": "n/a"
28063+
},
28064+
"roles": [
28065+
{
28066+
"helpText": "",
28067+
"role": "CNA"
28068+
}
28069+
],
28070+
"TLR": {
28071+
"shortName": "mitre",
28072+
"organizationName": "MITRE Corporation"
28073+
},
28074+
"type": [
28075+
"Vendor",
28076+
"Open Source"
28077+
]
28078+
},
28079+
"country": "China"
28080+
},
28081+
{
28082+
"shortName": "Nintendo",
28083+
"cnaID": "CNA-2026-0004",
28084+
"organizationName": "Nintendo Co., Ltd.",
28085+
"scope": "System vulnerabilities regarding the Nintendo Switch 2, Nintendo Switch, Nintendo Switch Lite, and vulnerabilities regarding Nintendo Switch 2 and Nintendo Switch applications for which Nintendo is the publisher worldwide.",
28086+
"contact": [
28087+
{
28088+
"email": [],
28089+
"contact": [
28090+
{
28091+
"label": "Nintendo HackerOne page",
28092+
"url": "https://hackerone.com/nintendo"
28093+
}
28094+
],
28095+
"form": []
28096+
}
28097+
],
28098+
"disclosurePolicy": [
28099+
{
28100+
"label": "Policy",
28101+
"language": "",
28102+
"url": "https://www.nintendo.com/jp/security-advisories/en/"
28103+
}
28104+
],
28105+
"securityAdvisories": {
28106+
"alerts": [],
28107+
"advisories": [
28108+
{
28109+
"label": "Advisories",
28110+
"url": "https://www.nintendo.com/jp/security-advisories/en/"
28111+
}
28112+
]
28113+
},
28114+
"resources": [],
28115+
"CNA": {
28116+
"isRoot": false,
28117+
"root": {
28118+
"shortName": "jpcert",
28119+
"organizationName": "JPCERT/CC"
28120+
},
28121+
"type": [
28122+
"Vendor"
28123+
],
28124+
"TLR": {
28125+
"shortName": "mitre",
28126+
"organizationName": "MITRE Corporation"
28127+
},
28128+
"roles": [
28129+
{
28130+
"helpText": "",
28131+
"role": "CNA"
28132+
}
28133+
]
28134+
},
28135+
"country": "Japan"
2785528136
}
2785628137
]

src/assets/data/boardMeetings.json

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,9 @@
11
{
22
"2025": [
3+
{
4+
"name": "December 10, 2025 - teleconference",
5+
"path": "msg00307.html"
6+
},
37
{
48
"name": "November 12, 2025 - teleconference",
59
"path": "msg00306.html"

src/assets/data/metrics.json

Lines changed: 53 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1167,6 +1167,59 @@
11671167
}
11681168
],
11691169
"cnasAddedByYear": [
1170+
{
1171+
"year": "2026",
1172+
"data": [
1173+
{
1174+
"month": "January",
1175+
"value": "5"
1176+
},
1177+
{
1178+
"month": "February",
1179+
"value": "TBA"
1180+
},
1181+
{
1182+
"month": "March",
1183+
"value": "TBA"
1184+
},
1185+
{
1186+
"month": "April",
1187+
"value": "TBA"
1188+
},
1189+
{
1190+
"month": "May",
1191+
"value": "TBA"
1192+
},
1193+
{
1194+
"month": "June",
1195+
"value": "TBA"
1196+
},
1197+
{
1198+
"month": "July",
1199+
"value": "TBA"
1200+
},
1201+
{
1202+
"month": "August",
1203+
"value": "TBA"
1204+
},
1205+
{
1206+
"month": "September",
1207+
"value": "TBA"
1208+
},
1209+
{
1210+
"month": "October",
1211+
"value": "TBA"
1212+
},
1213+
{
1214+
"month": "November",
1215+
"value": "TBA"
1216+
},
1217+
{
1218+
"month": "December",
1219+
"value": "TBA"
1220+
}
1221+
]
1222+
},
11701223
{
11711224
"year": "2025",
11721225
"data": [

0 commit comments

Comments
 (0)