|
2668 | 2668 | "shortName": "fedora", |
2669 | 2669 | "cnaID": "CNA-2017-0021", |
2670 | 2670 | "organizationName": "Fedora Project", |
2671 | | - "scope": "Vulnerabilities in open-source projects affecting the Fedora Project, that are not covered by a more specific CNA. CVEs can be assigned to vulnerabilities affecting end-of-life or unsupported releases by the Fedora Project", |
| 2671 | + "scope": "Vulnerabilities in open source projects affecting the Fedora Project, that are not covered by a more specific CNA. CVEs can be assigned to vulnerabilities affecting end-of-life or unsupported releases by the Fedora Project", |
2672 | 2672 | "contact": [ |
2673 | 2673 | { |
2674 | 2674 | "email": [], |
|
7065 | 7065 | "shortName": "redhat", |
7066 | 7066 | "cnaID": "CNA-2005-0006", |
7067 | 7067 | "organizationName": "Red Hat, Inc.", |
7068 | | - "scope": "<strong>Root Scope:</strong> The Red Hat Root’s scope includes the open-source community. Any open-source organizations that prefer Red Hat as their Root; organizations are free to choose another Root if it suits them better<br/><strong>CNA Scope:</strong> Vulnerabilities in open-source projects affecting Red Hat software that are not covered by a more specific CNA. CVEs can be assigned to vulnerabilities affecting end-of-life or unsupported Red Hat software", |
| 7068 | + "scope": "<strong>Root Scope:</strong> The Red Hat Root’s scope includes the open source community. Any open source organizations that prefer Red Hat as their Root; organizations are free to choose another Root if it suits them better<br/><strong>CNA Scope:</strong> Vulnerabilities in open source projects affecting Red Hat software that are not covered by a more specific CNA. CVEs can be assigned to vulnerabilities affecting end-of-life or unsupported Red Hat software", |
7069 | 7069 | "contact": [ |
7070 | 7070 | { |
7071 | 7071 | "email": [ |
|
9102 | 9102 | "shortName": "Vaadin", |
9103 | 9103 | "cnaID": "CNA-2021-0015", |
9104 | 9104 | "organizationName": "Vaadin Ltd.", |
9105 | | - "scope": "All Vaadin products and supported open-source projects hosted at <a href='https://github.com/vaadin' target='_blank'>https://github.com/vaadin</a>", |
| 9105 | + "scope": "All Vaadin products and supported open source projects hosted at <a href='https://github.com/vaadin' target='_blank'>https://github.com/vaadin</a>", |
9106 | 9106 | "contact": [ |
9107 | 9107 | { |
9108 | 9108 | "email": [ |
|
14699 | 14699 | "shortName": "Docker", |
14700 | 14700 | "cnaID": "CNA-2022-0050", |
14701 | 14701 | "organizationName": "Docker Inc.", |
14702 | | - "scope": "All Docker products, including Docker Desktop and Docker Hub, as well as Docker maintained open-source projects", |
| 14702 | + "scope": "All Docker products, including Docker Desktop and Docker Hub, as well as Docker maintained open source projects", |
14703 | 14703 | "contact": [ |
14704 | 14704 | { |
14705 | 14705 | "email": [ |
|
14997 | 14997 | "shortName": "dotCMS", |
14998 | 14998 | "cnaID": "CNA-2023-0001", |
14999 | 14999 | "organizationName": "dotCMS LLC", |
15000 | | - "scope": "All dotCMS product services including the vulnerabilities reported in our open-source core located at <a href='https://github.com/dotCMS/core' target='_blank'>https://github.com/dotCMS/core</a>", |
| 15000 | + "scope": "All dotCMS product services including the vulnerabilities reported in our open source core located at <a href='https://github.com/dotCMS/core' target='_blank'>https://github.com/dotCMS/core</a>", |
15001 | 15001 | "contact": [ |
15002 | 15002 | { |
15003 | 15003 | "email": [ |
|
15059 | 15059 | "shortName": "DHIS2", |
15060 | 15060 | "cnaID": "CNA-2023-0002", |
15061 | 15061 | "organizationName": "The HISP Centre at the University of Oslo", |
15062 | | - "scope": "Security issues in <a href='https://github.com/dhis2' target='_blank'>DHIS2</a> open-source web and mobile software applications", |
| 15062 | + "scope": "Security issues in <a href='https://github.com/dhis2' target='_blank'>DHIS2</a> open source web and mobile software applications", |
15063 | 15063 | "contact": [ |
15064 | 15064 | { |
15065 | 15065 | "email": [ |
|
16251 | 16251 | "shortName": "Ribose", |
16252 | 16252 | "cnaID": "CNA-2023-0023", |
16253 | 16253 | "organizationName": "Ribose Limited", |
16254 | | - "scope": "All Ribose products and services, including open-source projects, supported products, and end-of-life/end-of-service products", |
| 16254 | + "scope": "All Ribose products and services, including open source projects, supported products, and end-of-life/end-of-service products", |
16255 | 16255 | "contact": [ |
16256 | 16256 | { |
16257 | 16257 | "email": [ |
|
16533 | 16533 | "shortName": "IoT83", |
16534 | 16534 | "cnaID": "CNA-2023-0028", |
16535 | 16535 | "organizationName": "IoT83 Ltd", |
16536 | | - "scope": "Vulnerabilities in IoT83 product(s), services, and components only. Third-party, open-source components used in IoT83 product(s), services, and components are not in scope", |
| 16536 | + "scope": "Vulnerabilities in IoT83 product(s), services, and components only. Third-party, open source components used in IoT83 product(s), services, and components are not in scope", |
16537 | 16537 | "contact": [ |
16538 | 16538 | { |
16539 | 16539 | "email": [ |
|
16899 | 16899 | "shortName": "samsung.tv_appliance", |
16900 | 16900 | "cnaID": "CNA-2023-0034", |
16901 | 16901 | "organizationName": "Samsung TV & Appliance", |
16902 | | - "scope": "Samsung TV & Appliance products, Samsung-owned open-source projects listed on <a href='https://github.com/Samsung/' target='_blank'>https://github.com/Samsung/</a>, as well as vulnerabilities in third-party software discovered by Samsung that are not in another CNA’s scope. Vulnerabilities affecting end-of-life/end-of-service products are in scope. The following categories of Samsung Products are in scope: Internet-connected home appliances, B2C product (smart TV, smart monitor, soundbar, and projector), and B2B products (digital signage, interactive display, and kiosk)", |
| 16902 | + "scope": "Samsung TV & Appliance products, Samsung-owned open source projects listed on <a href='https://github.com/Samsung/' target='_blank'>https://github.com/Samsung/</a>, as well as vulnerabilities in third-party software discovered by Samsung that are not in another CNA’s scope. Vulnerabilities affecting end-of-life/end-of-service products are in scope. The following categories of Samsung Products are in scope: Internet-connected home appliances, B2C product (smart TV, smart monitor, soundbar, and projector), and B2B products (digital signage, interactive display, and kiosk)", |
16903 | 16903 | "contact": [ |
16904 | 16904 | { |
16905 | 16905 | "email": [ |
|
19436 | 19436 | "shortName": "Checkmarx", |
19437 | 19437 | "cnaID": "CNA-2023-0078", |
19438 | 19438 | "organizationName": "Checkmarx", |
19439 | | - "scope": "Vulnerabilities in Checkmarx products and open-source vulnerabilities discovered by, or reported to, Checkmarx, that are not in another CNA’s scope", |
| 19439 | + "scope": "Vulnerabilities in Checkmarx products and open source vulnerabilities discovered by, or reported to, Checkmarx, that are not in another CNA’s scope", |
19440 | 19440 | "contact": [ |
19441 | 19441 | { |
19442 | 19442 | "email": [ |
|
19719 | 19719 | "shortName": "EDB", |
19720 | 19720 | "cnaID": "CNA-2023-0083", |
19721 | 19721 | "organizationName": "EnterpriseDB Corporation", |
19722 | | - "scope": "All EnterpriseDB products and vulnerabilities identified in open-source libraries used by EnterpriseDB products unless covered by another CNA’s scope", |
| 19722 | + "scope": "All EnterpriseDB products and vulnerabilities identified in open source libraries used by EnterpriseDB products unless covered by another CNA’s scope", |
19723 | 19723 | "contact": [ |
19724 | 19724 | { |
19725 | 19725 | "email": [ |
|
23203 | 23203 | "shortName": "seal", |
23204 | 23204 | "cnaID": "CNA-2024-0060", |
23205 | 23205 | "organizationName": "Seal Security", |
23206 | | - "scope": "Vulnerabilities in Seal products or services and vulnerabilities discovered in open-source libraries unless covered by the scope of another CNA", |
| 23206 | + "scope": "Vulnerabilities in Seal products or services and vulnerabilities discovered in open source libraries unless covered by the scope of another CNA", |
23207 | 23207 | "contact": [ |
23208 | 23208 | { |
23209 | 23209 | "email": [ |
|
0 commit comments