|
2668 | 2668 | "shortName": "fedora", |
2669 | 2669 | "cnaID": "CNA-2017-0021", |
2670 | 2670 | "organizationName": "Fedora Project", |
2671 | | - "scope": "Vulnerabilities in open-source projects affecting the Fedora Project, that are not covered by a more specific CNA. CVEs can be assigned to vulnerabilities affecting end-of-life or unsupported releases by the Fedora Project", |
| 2671 | + "scope": "Vulnerabilities in open source projects affecting the Fedora Project, that are not covered by a more specific CNA. CVEs can be assigned to vulnerabilities affecting end-of-life or unsupported releases by the Fedora Project", |
2672 | 2672 | "contact": [ |
2673 | 2673 | { |
2674 | 2674 | "email": [], |
|
7065 | 7065 | "shortName": "redhat", |
7066 | 7066 | "cnaID": "CNA-2005-0006", |
7067 | 7067 | "organizationName": "Red Hat, Inc.", |
7068 | | - "scope": "<strong>Root Scope:</strong> The Red Hat Root’s scope includes the open-source community. Any open-source organizations that prefer Red Hat as their Root; organizations are free to choose another Root if it suits them better<br/><strong>CNA Scope:</strong> Vulnerabilities in open-source projects affecting Red Hat software that are not covered by a more specific CNA. CVEs can be assigned to vulnerabilities affecting end-of-life or unsupported Red Hat software", |
| 7068 | + "scope": "<strong>Root Scope:</strong> The Red Hat Root’s scope includes the open source community. Any open source organizations that prefer Red Hat as their Root; organizations are free to choose another Root if it suits them better<br/><strong>CNA Scope:</strong> Vulnerabilities in open source projects affecting Red Hat software that are not covered by a more specific CNA. CVEs can be assigned to vulnerabilities affecting end-of-life or unsupported Red Hat software", |
7069 | 7069 | "contact": [ |
7070 | 7070 | { |
7071 | 7071 | "email": [ |
|
9119 | 9119 | "shortName": "Vaadin", |
9120 | 9120 | "cnaID": "CNA-2021-0015", |
9121 | 9121 | "organizationName": "Vaadin Ltd.", |
9122 | | - "scope": "All Vaadin products and supported open-source projects hosted at <a href='https://github.com/vaadin' target='_blank'>https://github.com/vaadin</a>", |
| 9122 | + "scope": "All Vaadin products and supported open source projects hosted at <a href='https://github.com/vaadin' target='_blank'>https://github.com/vaadin</a>", |
9123 | 9123 | "contact": [ |
9124 | 9124 | { |
9125 | 9125 | "email": [ |
|
14716 | 14716 | "shortName": "Docker", |
14717 | 14717 | "cnaID": "CNA-2022-0050", |
14718 | 14718 | "organizationName": "Docker Inc.", |
14719 | | - "scope": "All Docker products, including Docker Desktop and Docker Hub, as well as Docker maintained open-source projects", |
| 14719 | + "scope": "All Docker products, including Docker Desktop and Docker Hub, as well as Docker maintained open source projects", |
14720 | 14720 | "contact": [ |
14721 | 14721 | { |
14722 | 14722 | "email": [ |
|
15014 | 15014 | "shortName": "dotCMS", |
15015 | 15015 | "cnaID": "CNA-2023-0001", |
15016 | 15016 | "organizationName": "dotCMS LLC", |
15017 | | - "scope": "All dotCMS product services including the vulnerabilities reported in our open-source core located at <a href='https://github.com/dotCMS/core' target='_blank'>https://github.com/dotCMS/core</a>", |
| 15017 | + "scope": "All dotCMS product services including the vulnerabilities reported in our open source core located at <a href='https://github.com/dotCMS/core' target='_blank'>https://github.com/dotCMS/core</a>", |
15018 | 15018 | "contact": [ |
15019 | 15019 | { |
15020 | 15020 | "email": [ |
|
15076 | 15076 | "shortName": "DHIS2", |
15077 | 15077 | "cnaID": "CNA-2023-0002", |
15078 | 15078 | "organizationName": "The HISP Centre at the University of Oslo", |
15079 | | - "scope": "Security issues in <a href='https://github.com/dhis2' target='_blank'>DHIS2</a> open-source web and mobile software applications", |
| 15079 | + "scope": "Security issues in <a href='https://github.com/dhis2' target='_blank'>DHIS2</a> open source web and mobile software applications", |
15080 | 15080 | "contact": [ |
15081 | 15081 | { |
15082 | 15082 | "email": [ |
|
16268 | 16268 | "shortName": "Ribose", |
16269 | 16269 | "cnaID": "CNA-2023-0023", |
16270 | 16270 | "organizationName": "Ribose Limited", |
16271 | | - "scope": "All Ribose products and services, including open-source projects, supported products, and end-of-life/end-of-service products", |
| 16271 | + "scope": "All Ribose products and services, including open source projects, supported products, and end-of-life/end-of-service products", |
16272 | 16272 | "contact": [ |
16273 | 16273 | { |
16274 | 16274 | "email": [ |
|
16550 | 16550 | "shortName": "IoT83", |
16551 | 16551 | "cnaID": "CNA-2023-0028", |
16552 | 16552 | "organizationName": "IoT83 Ltd", |
16553 | | - "scope": "Vulnerabilities in IoT83 product(s), services, and components only. Third-party, open-source components used in IoT83 product(s), services, and components are not in scope", |
| 16553 | + "scope": "Vulnerabilities in IoT83 product(s), services, and components only. Third-party, open source components used in IoT83 product(s), services, and components are not in scope", |
16554 | 16554 | "contact": [ |
16555 | 16555 | { |
16556 | 16556 | "email": [ |
|
16916 | 16916 | "shortName": "samsung.tv_appliance", |
16917 | 16917 | "cnaID": "CNA-2023-0034", |
16918 | 16918 | "organizationName": "Samsung TV & Appliance", |
16919 | | - "scope": "Samsung TV & Appliance products, Samsung-owned open-source projects listed on <a href='https://github.com/Samsung/' target='_blank'>https://github.com/Samsung/</a>, as well as vulnerabilities in third-party software discovered by Samsung that are not in another CNA’s scope. Vulnerabilities affecting end-of-life/end-of-service products are in scope. The following categories of Samsung Products are in scope: Internet-connected home appliances, B2C product (smart TV, smart monitor, soundbar, and projector), and B2B products (digital signage, interactive display, and kiosk)", |
| 16919 | + "scope": "Samsung TV & Appliance products, Samsung-owned open source projects listed on <a href='https://github.com/Samsung/' target='_blank'>https://github.com/Samsung/</a>, as well as vulnerabilities in third-party software discovered by Samsung that are not in another CNA’s scope. Vulnerabilities affecting end-of-life/end-of-service products are in scope. The following categories of Samsung Products are in scope: Internet-connected home appliances, B2C product (smart TV, smart monitor, soundbar, and projector), and B2B products (digital signage, interactive display, and kiosk)", |
16920 | 16920 | "contact": [ |
16921 | 16921 | { |
16922 | 16922 | "email": [ |
|
19453 | 19453 | "shortName": "Checkmarx", |
19454 | 19454 | "cnaID": "CNA-2023-0078", |
19455 | 19455 | "organizationName": "Checkmarx", |
19456 | | - "scope": "Vulnerabilities in Checkmarx products and open-source vulnerabilities discovered by, or reported to, Checkmarx, that are not in another CNA’s scope", |
| 19456 | + "scope": "Vulnerabilities in Checkmarx products and open source vulnerabilities discovered by, or reported to, Checkmarx, that are not in another CNA’s scope", |
19457 | 19457 | "contact": [ |
19458 | 19458 | { |
19459 | 19459 | "email": [ |
|
19736 | 19736 | "shortName": "EDB", |
19737 | 19737 | "cnaID": "CNA-2023-0083", |
19738 | 19738 | "organizationName": "EnterpriseDB Corporation", |
19739 | | - "scope": "All EnterpriseDB products and vulnerabilities identified in open-source libraries used by EnterpriseDB products unless covered by another CNA’s scope", |
| 19739 | + "scope": "All EnterpriseDB products and vulnerabilities identified in open source libraries used by EnterpriseDB products unless covered by another CNA’s scope", |
19740 | 19740 | "contact": [ |
19741 | 19741 | { |
19742 | 19742 | "email": [ |
|
23220 | 23220 | "shortName": "seal", |
23221 | 23221 | "cnaID": "CNA-2024-0060", |
23222 | 23222 | "organizationName": "Seal Security", |
23223 | | - "scope": "Vulnerabilities in Seal products or services and vulnerabilities discovered in open-source libraries unless covered by the scope of another CNA", |
| 23223 | + "scope": "Vulnerabilities in Seal products or services and vulnerabilities discovered in open source libraries unless covered by the scope of another CNA", |
23224 | 23224 | "contact": [ |
23225 | 23225 | { |
23226 | 23226 | "email": [ |
|
0 commit comments