Skip to content

Commit 9f2f7e9

Browse files
authored
Merge pull request #3519 from CVEProject/int
4/1/25 Release: INT to MAIN
2 parents be245fd + 26e7e57 commit 9f2f7e9

File tree

6 files changed

+165
-14
lines changed

6 files changed

+165
-14
lines changed

src/assets/data/CNAsList.json

Lines changed: 8 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -3648,7 +3648,7 @@
36483648
"shortName": "hpe",
36493649
"cnaID": "CNA-2016-0003",
36503650
"organizationName": "Hewlett Packard Enterprise (HPE)",
3651-
"scope": "HPE issues only.",
3651+
"scope": "HPE and acquisitions issues only.",
36523652
"contact": [
36533653
{
36543654
"email": [
@@ -8120,7 +8120,7 @@
81208120
"shortName": "suse",
81218121
"cnaID": "CNA-2014-0003",
81228122
"organizationName": "SUSE",
8123-
"scope": "SUSE and Rancher issues only.",
8123+
"scope": "SUSE and Rancher specific security issues, and vulnerabilities discovered by SUSE that are not covered by the scope of another CNA.",
81248124
"contact": [
81258125
{
81268126
"email": [
@@ -8158,7 +8158,8 @@
81588158
},
81598159
"type": [
81608160
"Vendor",
8161-
"Open Source"
8161+
"Open Source",
8162+
"Researcher"
81628163
],
81638164
"TLR": {
81648165
"shortName": "mitre",
@@ -8319,7 +8320,7 @@
83198320
"url": "https://www.synaptics.com/products/touchpad-family"
83208321
},
83218322
{
8322-
"label": "Biomentrics Advisories",
8323+
"label": "Biometrics Advisories",
83238324
"url": "https://www.synaptics.com/products/biometrics"
83248325
},
83258326
{
@@ -14284,7 +14285,7 @@
1428414285
{
1428514286
"label": "Policy",
1428614287
"language": "",
14287-
"url": "https://onekey.com/resposible-disclosure-policy/"
14288+
"url": "https://www.onekey.com/responsible-disclosure-policy"
1428814289
}
1428914290
],
1429014291
"securityAdvisories": {
@@ -25527,8 +25528,8 @@
2552725528
"CNA": {
2552825529
"isRoot": false,
2552925530
"root": {
25530-
"shortName": "n/a",
25531-
"organizationName": "n/a"
25531+
"shortName": "redhat",
25532+
"organizationName": "Red Hat, Inc."
2553225533
},
2553325534
"roles": [
2553425535
{

src/assets/data/NotificationBanner.json

Lines changed: 26 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -19,6 +19,32 @@
1919
{
2020
"contentType": "paragraph",
2121
"content": "."
22+
},
23+
{
24+
"contentType": "paragraph",
25+
"content": "<br/><br/>"
26+
},
27+
{
28+
"contentType": "paragraph",
29+
"content": "<b>NOTICE &mdash;</b>"
30+
},
31+
32+
{
33+
"contentType": "paragraph",
34+
"content": "Due to routine maintenance, the "
35+
},
36+
{
37+
"contentType": "internalLink",
38+
"link": "/",
39+
"linkText": "CVE List on the CVE.ORG website"
40+
},
41+
{
42+
"contentType": "paragraph",
43+
"content": "will be <strong>unavailable on April 2, 2025 between 1:00 PM and 5:00 PM EDT</strong>. As a result, searching CVE IDs and CVE Records on the CVE.ORG website will be unavailable during this time. We apologize for the inconvenience and thank you for your understanding."
44+
},
45+
{
46+
"contentType": "paragraph",
47+
"content": "<br/><br/>"
2248
}
2349
]
2450
}

src/assets/data/events.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -34,7 +34,7 @@
3434
"displayOnHomepageOrder": 1,
3535
"title": "CVE/FIRST VulnCon 2025",
3636
"location": "Raleigh, North Carolina, USA & Virtual",
37-
"description": "VulnCon 2025 is co-sponsored by the <a href='/'>CVE Program</a> and <a href='https://www.first.org/' target='_blank'>FIRST</a> and is open to the public.<br/><br/><strong>SPECIAL MESSAGE FOR CVE NUMBERING AUTHORITIES (CNAs)</strong>:<br/><i>VulnCon 2025 takes the place of this year’s Spring CVE Global Summit.</i><br/><br/><strong>Agenda</strong>:<br/> Available <a href='https://www.first.org/conference/vulncon2025/program' target='_blank'>here</a>.<br/><br/><strong>Registration</strong>:<br/>Open. Details <a href='https://www.first.org/conference/vulncon2025/#Registration-Information' target='_blank'>here</a>.<br/><ul><li>Virtual Admission: US $100.00</li><li>In-person Standard Admission (by March 15, 2025): US $300.00</li><li>In-person Late Rate Admission (after March 15, 2025): US $375.00</li></ul>Registration fees include four days of coffee breaks and buffet lunches, one networking reception hosted at the McKimmon Center, and applicable meeting materials. Note that discounted rates are not being offered for this event regardless of membership or speaking status.<br/><br/>An offsite social event is planned for Tuesday, April 8, from 19:00-21:00 in downtown Raleigh. Location to be announced in January. You may purchase a ticket during your main registration or access a separate purchase form link found in your registration email confirmation. Tickets are US $30.00 per person.<br/><br/><strong>Program Overview</strong>:<br/>* Day 1: Monday, April 7 &mdash; Plenary, Vendor Tables, Welcome Reception<br/>* Day 2: Tuesday, April 8 &mdash; Plenary, Vendor Tables, Off-site Social Event<br/>* Day 3: Wednesday, April 9 &mdash; Plenary, Breakouts, Vendor Tables<br/>* Day 4: Thursday, April 10 &mdash; Plenary, Breakouts, Vendor Tables<br/><br/><strong>Venue</strong>:<br/><a href='https://facilities.ofa.ncsu.edu/building/mck/' target='_blank'>McKimmon Center,<br/>North Carolina State University</a>,<br/>1101 Gorman St.,<br/> Raleigh, North Carolina 27606<br/>USA<br/><br/><strong>Call for Papers</strong>:<br/>Closed on January 31, 2025. Details <a href='https://www.first.org/conference/vulncon2025/cfp' target='_blank'>here</a>.<br/><br/><strong>Purpose</strong>:<br/>The purpose of <a href='https://www.first.org/conference/vulncon2025/' target='_blank'>VulnCon</a> is to collaborate with various vulnerability management and cybersecurity professionals to develop forward leaning ideas that can be taken back to individual programs for action to benefit the vulnerability management ecosystem.<br/><br/>A key goal of the conference is to understand what important stakeholders and programs are doing within the vulnerability management ecosystem and best determine how to benefit the ecosystem broadly.",
37+
"description": "VulnCon 2025 is co-sponsored by the <a href='/'>CVE Program</a> and <a href='https://www.first.org/' target='_blank'>FIRST</a> and is open to the public.<br/><br/><strong>SPECIAL MESSAGE FOR CVE NUMBERING AUTHORITIES (CNAs)</strong>:<br/><i>VulnCon 2025 takes the place of this year’s Spring CVE Global Summit.</i><br/><br/><strong>Agenda</strong>:<br/> Available <a href='https://www.first.org/conference/vulncon2025/program' target='_blank'>here</a>.<br/><br/><strong>Registration</strong>:<br/>Virtual registration available until April 4, 2025. Details <a href='https://www.first.org/conference/vulncon2025/#Registration-Information' target='_blank'>here</a>.<br/><ul><li>Virtual Admission: US $100.00 (until April 4, 2025)</li><li>In-person Standard Admission (closed): US $300.00</li><li>In-person Late Rate Admission (closed): US $375.00</li></ul>Registration fees include four days of coffee breaks and buffet lunches, one networking reception hosted at the McKimmon Center, and applicable meeting materials. Note that discounted rates are not being offered for this event regardless of membership or speaking status.<br/><br/>An offsite social event is planned for Tuesday, April 8, from 19:00-21:00 in downtown Raleigh. Location to be announced in January. You may purchase a ticket during your main registration or access a separate purchase form link found in your registration email confirmation. Tickets are US $30.00 per person.<br/><br/><strong>Program Overview</strong>:<br/>* Day 1: Monday, April 7 &mdash; Plenary, Vendor Tables, Welcome Reception<br/>* Day 2: Tuesday, April 8 &mdash; Plenary, Vendor Tables, Off-site Social Event<br/>* Day 3: Wednesday, April 9 &mdash; Plenary, Breakouts, Vendor Tables<br/>* Day 4: Thursday, April 10 &mdash; Plenary, Breakouts, Vendor Tables<br/><br/><strong>Venue</strong>:<br/><a href='https://facilities.ofa.ncsu.edu/building/mck/' target='_blank'>McKimmon Center,<br/>North Carolina State University</a>,<br/>1101 Gorman St.,<br/> Raleigh, North Carolina 27606<br/>USA<br/><br/><strong>Call for Papers</strong>:<br/>Closed on January 31, 2025. Details <a href='https://www.first.org/conference/vulncon2025/cfp' target='_blank'>here</a>.<br/><br/><strong>Purpose</strong>:<br/>The purpose of <a href='https://www.first.org/conference/vulncon2025/' target='_blank'>VulnCon</a> is to collaborate with various vulnerability management and cybersecurity professionals to develop forward leaning ideas that can be taken back to individual programs for action to benefit the vulnerability management ecosystem.<br/><br/>A key goal of the conference is to understand what important stakeholders and programs are doing within the vulnerability management ecosystem and best determine how to benefit the ecosystem broadly.",
3838
"permission": "public",
3939
"url": "https://www.first.org/conference/vulncon2025/",
4040
"date": {

src/assets/data/metrics.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1137,7 +1137,7 @@
11371137
},
11381138
{
11391139
"month": "March",
1140-
"value": "3"
1140+
"value": "4"
11411141
},
11421142
{
11431143
"month": "April",

src/assets/data/news.json

Lines changed: 120 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,126 @@
11
{
22
"currentNews": [
3+
{
4+
"id": 503,
5+
"displayOnHomepageOrder": 1,
6+
"newsType": "blog",
7+
"title": "LAST CHANCE &mdash; Virtual Registration for <i>CVE/FIRST VulnCon 2025</i> Closes April 4",
8+
"urlKeywords": "VulnCon 2025 Registration Closes April 4",
9+
"date": "2025-04-01",
10+
"author": {
11+
"name": "CVE Program",
12+
"organization": {
13+
"name": "CVE Program",
14+
"url": ""
15+
},
16+
"title": "",
17+
"bio": ""
18+
},
19+
"description": [
20+
{
21+
"contentnewsType": "paragraph",
22+
"content": "Registration for virtual attendance to <a href='https://www.first.org/conference/vulncon2025/' target='_blank'><i>CVE/FIRST VulnCon 2025</i></a> is open through April 4, 2025, on the <a href='https://www.first.org/conference/vulncon2025/#Registration-Information' target='_blank'>FIRST conference website</a>. Virtual admission registration is US $100.00. Discounted rates are not offered for this event regardless of membership or speaking status. This is your last chance, so <a href='https://www.first.org/conference/vulncon2025/#Registration-Information' target='_blank'>register today</a>!"
23+
},
24+
{
25+
"contentnewsType": "paragraph",
26+
"content": "The <a href='/'>CVE Program</a> and <a href='https://www.first.org/' target='_blank'>FIRST</a> are co-hosting <i><a href='https://www.first.org/conference/vulncon2025/' target='_blank'>VulnCon 2025</a></i> at the McKimmon Center in Raleigh, North Carolina, USA, on April 7-10, 2025. <a href='/PartnerInformation/ListofPartners'>CVE Numbering Authorities (CNAs)</a> &mdash; VulnCon 2025 takes the place of the 2025 Spring CVE Global Summit."
27+
},
28+
{
29+
"contentnewsType": "image",
30+
"imageWidth": "",
31+
"href": "/news/VulnCon2025.png",
32+
"altText": "CVE/FIRST VulnCon 2025, April 7-10, 2025",
33+
"captionText": "<a href='https://www.first.org/conference/vulncon2025/' target='_blank'><i>VulnCon 2025</i>"
34+
},
35+
{
36+
"contentnewsType": "paragraph",
37+
"content": "<h3>Agenda</h3>"
38+
},
39+
{
40+
"contentnewsType": "paragraph",
41+
"content": "View the <a href='https://www.first.org/conference/vulncon2025/program'>full agenda</a> on the <a href='https://www.first.org/conference/vulncon2025/program' target='_blank'>conference web page</a> or view the schedule by day:"
42+
},
43+
{
44+
"contentnewsType": "paragraph",
45+
"content": "<strong>Monday, April 7</strong> &mdash; <a href='https://www.first.org/conference/vulncon2025/program#d20250407' target='_blank'>View day 1 schedule</a><br/><strong>Tuesday, April 8</strong> &mdash; <a href='https://www.first.org/conference/vulncon2025/program#d20250408' target='_blank'>View day 2 schedule</a><br/><strong>Wednesday, April 9</strong> &mdash; <a href='https://www.first.org/conference/vulncon2025/program#d20250409' target='_blank'>View day 3 schedule</a><br/><strong>Thursday, April 10</strong> &mdash; <a href='https://www.first.org/conference/vulncon2025/program#d20250410' target='_blank'>View day 4 schedule</a>"
46+
},
47+
{
48+
"contentnewsType": "paragraph",
49+
"content": "<h3>Venue</h3>"
50+
},
51+
{
52+
"contentnewsType": "paragraph",
53+
"content": "<a href='https://facilities.ofa.ncsu.edu/building/mck/' target='_blank'>McKimmon Center</a><br/>North Carolina State University<br/>1101 Gorman St.<br/>Raleigh, North Carolina 27606<br/>USA"
54+
},
55+
{
56+
"contentnewsType": "paragraph",
57+
"content": "<h3>Learn More About VulnCon 2025</h3>"
58+
},
59+
{
60+
"contentnewsType": "paragraph",
61+
"content": "The purpose of the <a href='https://www.first.org/conference/vulncon2025/' target='_blank'>VulnCon</a> &mdash; which is open to the public &mdash; is to collaborate with various vulnerability management and cybersecurity professionals to develop forward leaning ideas that can be taken back to individual programs for action to benefit the vulnerability management ecosystem. A key goal of the conference is to understand what important stakeholders and programs are doing within the vulnerability management ecosystem and best determine how to benefit the ecosystem broadly."
62+
},
63+
{
64+
"contentnewsType": "paragraph",
65+
"content": "For the most up-to-date information, visit the <a href='https://www.first.org/conference/vulncon2025/' target='_blank'>CVE/FIRST VulnCon 2025</a> conference page hosted on the FIRST website."
66+
},
67+
{
68+
"contentnewsType": "paragraph",
69+
"content": "We look forward to seeing you at this exciting community event and encourage you to <a href='https://www.first.org/conference/vulncon2025/#Registration-Information' target='_blank'>register today!</a>"
70+
}
71+
]
72+
},
73+
{
74+
"id": 502,
75+
"displayOnHomepageOrder": 2,
76+
"newsType": "blog",
77+
"title": "FINAL REMINDER &mdash; Please Complete Our “CVE Data Usage and Satisfaction Survey” by April 4",
78+
"urlKeywords": "CVE Data Usage Satisfaction Survey Final Reminder",
79+
"date": "2025-04-01",
80+
"author": {
81+
"name": "CVE Program",
82+
"organization": {
83+
"name": "CVE Program",
84+
"url": ""
85+
},
86+
"title": "",
87+
"bio": ""
88+
},
89+
"description": [
90+
{
91+
"contentnewsType": "paragraph",
92+
"content": "The “<a target='_blank' href='https://forms.office.com/g/hx168RPctg'>CVE Data Usage and Satisfaction Survey</a>,” which opened on March 4, 2025, will close at <strong>11:59 PM ET on April 4, 2025</strong>. If you are a consumer of <a href='/ResourcesSupport/Glossary#glossaryRecord'>CVE Records</a>, or a defender, the <a href='/'>CVE Program</a> would like to hear from you about such topics as:<ul><li>Where do you get your CVE data from?</li><li>How do you use CVE data?</li><li>Do you store a copy of the CVE data?</li><li>What data types (i.e., fields) are most important to you in a CVE Record?</li><li>Are there data types that you’d like to see added to CVE Records in the future (e.g., purl)?</li></ul>To participate in the survey, please click <a target='_blank' href='https://forms.office.com/g/hx168RPctg'>here</a>."
93+
},
94+
{
95+
"contentnewsType": "paragraph",
96+
"content": "Your feedback will play a crucial role in enhancing the CVE Program and its service offerings. Your responses, which will be anonymous unless you provide your contact information in the final optional question, will be used solely for research and improvement purposes."
97+
},
98+
{
99+
"contentnewsType": "paragraph",
100+
"content": "If you have any questions or need assistance, please use the <a target='_blank' href='https://cveform.mitre.org/'>CVE Request Web Form</a> and select “Other” from the dropdown menu."
101+
}
102+
]
103+
},
104+
{
105+
"id": 501,
106+
"newsType": "news",
107+
"title": "Minutes from CVE Board Teleconference Meeting on March 5 Now Available",
108+
"urlKeywords": "CVE Board Minutes from March 5",
109+
"date": "2025-04-01",
110+
"description": [
111+
{
112+
"contentnewsType": "paragraph",
113+
"content": "The <a href='/ProgramOrganization/Board'>CVE Board</a> held a teleconference meeting on March 5, 2025. Read the <a href='https://cve.mitre.org/community/board/meeting_summaries/05_March_2025.pdf' target='_blank'>meeting minutes summary</a>."
114+
},
115+
{
116+
"contentnewsType": "paragraph",
117+
"content": "The CVE Board is the organization responsible for the strategic direction, governance, operational structure, policies, and rules of the CVE Program. The Board includes members from numerous cybersecurity-related organizations including commercial security tool vendors, academia, research institutions, government departments and agencies, and other prominent security experts, as well as end-users of vulnerability information."
118+
}
119+
]
120+
},
3121
{
4122
"id": 500,
123+
"displayOnHomepageOrder": 4,
5124
"newsType": "news",
6125
"title": "Digi Added as CVE Numbering Authority (CNA)",
7126
"urlKeywords": "Digi Added as CNA",
@@ -23,6 +142,7 @@
23142
},
24143
{
25144
"id": 499,
145+
"displayOnHomepageOrder": 3,
26146
"newsType": "blog",
27147
"title": "Vulnerability Data Enrichment for CVE Records: 250 CNAs on the Enrichment Recognition List for March 25, 2025",
28148
"urlKeywords": "CNA Enrichment Recognition List Update",
@@ -59,7 +179,6 @@
59179
},
60180
{
61181
"id": 498,
62-
"displayOnHomepageOrder": 1,
63182
"newsType": "blog",
64183
"title": "Reminder for CVE Consumers &mdash; Please Complete the “CVE Data Usage and Satisfaction Survey” Before April 4, 2025",
65184
"urlKeywords": "CVE Data Usage and Satisfaction Survey Reminder",
@@ -210,7 +329,6 @@
210329
},
211330
{
212331
"id": 492,
213-
"displayOnHomepageOrder": 2,
214332
"newsType": "blog",
215333
"title": "Full Agenda Now Available for <i>CVE/FIRST VulnCon 2025</i> on April 7-10, 2025!",
216334
"urlKeywords": "Full Agenda for CVE FIRST VulnCon 2025",

src/views/Home.vue

Lines changed: 9 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -12,9 +12,9 @@
1212
Identify, define, and catalog publicly disclosed cybersecurity vulnerabilities.
1313
<button v-if="cveRecordsLoading" class="button is-loading cve-margin-top-neg7 cve-button-ghost"></button>
1414
<p class="subtile mt-2" v-if="!cveRecordsLoading && !cveRecordsRequestErrored">
15-
Currently, there are <span class="has-text-weight-bold">{{cveRecordsTotal}}</span> CVE Records accessible via
16-
<router-link to="/Downloads">Download</router-link>
17-
or <span class="has-text-weight-bold">Keyword Search</span> above
15+
There are currently over <span class="has-text-weight-bold">{{cveRecordsTotal}}</span>
16+
CVE Records accessible via <router-link to="/Downloads">Download</router-link>
17+
or <span class="has-text-weight-bold">Keyword Search</span> above.
1818
</p>
1919
</div>
2020
<div class="notification is-warning is-light" role="alert" v-if="cveRecordsRequestErrored">
@@ -82,6 +82,12 @@ export default {
8282
8383
if ((typeof count === 'number') && !Number.isNaN(count)) {
8484
this.cveRecordsRequestErrored = false;
85+
86+
// As of March 2025, we're reporting the CVE record count rounded
87+
// to the next lowest thousand, and reporting it as "over xxx"
88+
// thousand records (a la McDonald's), instead of the actual count.
89+
90+
count = Math.floor(count / 1000) * 1000;
8591
this.cveRecordsTotal = count.toString().replace(/\B(?=(\d{3})+(?!\d))/g, ',');
8692
} else {
8793
this.cveRecordsRequestErrored = true;

0 commit comments

Comments
 (0)