Skip to content

Commit 4c1be22

Browse files
authored
Merge pull request #3178 from CVEProject/test
update main with Test
2 parents 21df09b + fcd4a0d commit 4c1be22

File tree

8 files changed

+134
-22
lines changed

8 files changed

+134
-22
lines changed

src/assets/data/CNAsList.json

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -7477,7 +7477,7 @@
74777477
"email": [
74787478
{
74797479
"label": "Email",
7480-
"emailAddr": "cybersecurity@se.com"
7480+
"emailAddr": "cpcert@se.com"
74817481
}
74827482
],
74837483
"contact": [
@@ -9231,14 +9231,14 @@
92319231
{
92329232
"shortName": "vmware",
92339233
"cnaID": "CNA-2016-0025",
9234-
"organizationName": "VMware",
9234+
"organizationName": "VMware by Broadcom",
92359235
"scope": "VMware, Spring, and Cloud Foundry issues only",
92369236
"contact": [
92379237
{
92389238
"email": [
92399239
{
92409240
"label": "Email",
9241-
"emailAddr": "security@vmware.com"
9241+
"emailAddr": "vmware.psirt@broadcom.com"
92429242
}
92439243
],
92449244
"contact": [],
@@ -9249,15 +9249,15 @@
92499249
{
92509250
"label": "Policy",
92519251
"language": "",
9252-
"url": "https://www.vmware.com/support/policies/security_response.html"
9252+
"url": "https://www.broadcom.com/support/vmware-services/security-response"
92539253
}
92549254
],
92559255
"securityAdvisories": {
92569256
"alerts": [],
92579257
"advisories": [
92589258
{
92599259
"label": "Advisories",
9260-
"url": "https://www.vmware.com/security/advisories.html"
9260+
"url": "https://www.broadcom.com/support/vmware-security-advisories"
92619261
}
92629262
]
92639263
},

src/assets/data/events.json

Lines changed: 20 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -1,11 +1,27 @@
11
{
22
"currentEvents": [
3+
{
4+
"id": 35,
5+
"title": "CVE Artificial Intelligence Working Group (CVEAI WG) Meeting",
6+
"location": "Virtual",
7+
"description": "Focused on defining swim lanes for AI vulnerability disclosure within the CVE Program.",
8+
"permission": "private",
9+
"url": "/ProgramOrganization/WorkingGroups#CVEArtificialIntelligenceWorkingGroupCVEAIWG",
10+
"date": {
11+
"start": "2024-10-15",
12+
"end": "2024-12-31",
13+
"repeat": {
14+
"day": "Monday",
15+
"recurrence": "biweekly"
16+
}
17+
}
18+
},
319
{
420
"id": 34,
521
"displayOnHomepageOrder": 1,
622
"title": "CVE Program Workshop – Autumn 2024",
723
"location": "Virtual",
8-
"description": "A collaborative virtual community event of CVE Partners focused on improving CVE.<br/><br/>Event Time: 10:00 AM to 2:00 PM EDT both days.<br/><br/>Workshop “save the date” announcement, with expected topics and other details, sent to partners on September 19, 2024.",
24+
"description": "A collaborative virtual community event of CVE Partners focused on improving CVE.<br/><br/>Event Time: 10:00 AM to 2:00 PM EDT both days.<br/><br/>Please refer to the CNA partners email announcements for agenda topics, deadlines, and other workshop details.",
925
"permission": "private",
1026
"url": "",
1127
"date": {
@@ -430,15 +446,15 @@
430446
"id": 3,
431447
"title": "CVE Outreach and Communications Working Group (OCWG) Meeting",
432448
"location": "Virtual",
433-
"description": "Promote the CVE Program to achieve program adoption and coverage goals through increased community awareness. Each calendar year there are six meetings held on a Monday (UTC-08:00) and six meetings held on a Wednesday (UTC-12:00).",
449+
"description": "Promote the CVE Program to achieve program adoption and coverage goals through increased community awareness.",
434450
"permission": "private",
435451
"url": "/ProgramOrganization/WorkingGroups#OutreachandCommunicationsWorkingGroupOCWG",
436452
"date": {
437453
"start": "2024-01-01",
438454
"end": "2024-12-31",
439455
"repeat": {
440-
"day": "Monday or Wednesday alternating every other month",
441-
"recurrence": "monthly"
456+
"day": "Friday",
457+
"recurrence": "weekly"
442458
}
443459
}
444460
},

src/assets/data/faqs.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -256,7 +256,7 @@
256256
"questionText": "Are there CVE List data feeds",
257257
"questionResponseParagraphs": [
258258
"Yes, both internal and external feeds of CVE List content are available.",
259-
"CVE Program:<ul><li><a href='https://twitter.com/CVEnew/' target='_blank'>Feed of newly published CVE Records</a> @CVEnew Twitter</li><li><a href='https://github.com/CVEProject/cvelistV5' target='_blank'>CVE List downloads (updated hourly)</a> cvelistV5 repository on GitHub</li></ul>",
259+
"CVE Program:<ul><li><a href='https://x.com/CVEnew' target='_blank'>Feed of newly published CVE Records</a> @CVEnew on X</li><li><a href='https://github.com/CVEProject/cvelistV5' target='_blank'>CVE List downloads (updated hourly)</a> cvelistV5 repository on GitHub</li></ul>",
260260
"External:<ul><li><a href='https://cassandra.cerias.purdue.edu/CVE_changes/' target='_blank'>CVE Change Logs</a> free tool from CERIAS/Purdue University that provides daily and monthly changes to CVE Records.</li></ul>"
261261
]
262262
},

src/assets/data/navigation.json

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -201,6 +201,10 @@
201201
"anchorId": "CNAOrganizationOfPeersCOOP",
202202
"label": "CNA Organization of Peers (COOP)"
203203
},
204+
"CVE Artificial Intelligence Working Group (CVEAI WG)": {
205+
"anchorId": "CVEArtificialIntelligenceWorkingGroupCVEAIWG",
206+
"label": "CVE Artificial Intelligence Working Group (CVEAI WG)"
207+
},
204208
"Outreach and Communications Working Group (OCWG)": {
205209
"anchorId": "OutreachandCommunicationsWorkingGroupOCWG",
206210
"label": "Outreach and Communications Working Group (OCWG)"

src/assets/data/news.json

Lines changed: 39 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,43 @@
11
{
22
"currentNews": [
3+
{
4+
"id": 421,
5+
"newsType": "news",
6+
"title": "CVE Program Adds New “CVE Artificial Intelligence Working Group (CVEAI WG)”",
7+
"urlKeywords": "New CVE Artificial Intelligence Working Group",
8+
"date": "2024-10-15",
9+
"description": [
10+
{
11+
"contentnewsType": "paragraph",
12+
"content": "The CVE Program’s newest working group (WG), <a href='/ProgramOrganization/WorkingGroups#CVEArtificialIntelligenceWorkingGroupCVEAIWG'>CVE Artificial Intelligence</a> (CVEAI WG), is open to CVE community members such as <a href='/ProgramOrganization/CNAs'>CVE Numbering Authorities (CNAs)</a>, the <a href='/ProgramOrganization/Board'>CVE Board</a>, <a href='/ProgramOrganization/ADPs'>Authorized Data Publishers (ADPs)</a>, and participants from the <a href='/ResourcesSupport/Glossary?activeTerm=glossarySecretariat'>CVE Program Secretariat</a>; members of corporate vulnerability management programs and related standards, initiatives, and associations; and members of the AI community with expertise in AI and AI-related security concerns."
13+
},
14+
{
15+
"contentnewsType": "paragraph",
16+
"content": "The CVEAI WG will focus on: “determining what is a CVE-able vulnerability in AI technology. It is expected the CVEAI WG will produce documentation that defines how the CVE Program will address AI technologies moving forward. The CVEAI WG efforts are focused on defining swim lanes for AI vulnerability disclosure within CVE. This WG will discuss the concerns in defining what is within the responsibilities of the CVE Program. Because not all AI issues are appropriate for a CVE assignment, it will also try to define when other AI security-related initiatives are needed to address concerns outside the CVE Program.”"
17+
},
18+
{
19+
"contentnewsType": "paragraph",
20+
"content": "Read the <a href='/Resources/Roles/WorkingGroups/CVEAIWG/CVEAIWG-Charter.pdf' target='_blank'>CVEAI WG charter</a>."
21+
}
22+
]
23+
},
24+
{
25+
"id": 420,
26+
"newsType": "news",
27+
"title": "Minutes from CVE Board Teleconference Meeting on October 2 Now Available",
28+
"urlKeywords": "CVE Board Minutes from October 2",
29+
"date": "2024-10-15",
30+
"description": [
31+
{
32+
"contentnewsType": "paragraph",
33+
"content": "The <a href='/ProgramOrganization/Board'>CVE Board</a> held a teleconference meeting on October 2, 2024. Read the <a href='https://cve.mitre.org/community/board/meeting_summaries/02_October_2024.pdf' target='_blank'>meeting minutes summary</a>."
34+
},
35+
{
36+
"contentnewsType": "paragraph",
37+
"content": "The CVE Board is the organization responsible for the strategic direction, governance, operational structure, policies, and rules of the CVE Program. The Board includes members from numerous cybersecurity-related organizations including commercial security tool vendors, academia, research institutions, government departments and agencies, and other prominent security experts, as well as end-users of vulnerability information."
38+
}
39+
]
40+
},
341
{
442
"id": 419,
543
"newsType": "blog",
@@ -32,6 +70,7 @@
3270
},
3371
{
3472
"id": 418,
73+
"displayOnHomepageOrder": 0,
3574
"newsType": "news",
3675
"title": "Minutes from CVE Board Teleconference Meeting on September 18 Now Available",
3776
"urlKeywords": "CVE Board Minutes from September 18",

src/components/FooterModule.vue

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -48,14 +48,14 @@
4848
<font-awesome-icon :icon="['fab', 'medium']" aria-labelledby="mediumIcon" aria-hidden="false" focusable="false"/>
4949
</span></a>
5050
<div>
51-
<a class="cve-social-media-icon-with-text" href="https://twitter.com/CVEnew/" target="_blank">
51+
<a class="cve-social-media-icon-with-text" href="https://x.com/CVEnew" target="_blank">
5252
<span class="icon">
5353
<p id="x-twitterNewIcon" class="is-hidden">x-twitter icon for @CVEnew</p>
5454
<font-awesome-icon :icon="['fab', 'x-twitter']" aria-labelledby="x-twitterNewIcon" aria-hidden="false" focusable="false"/>
5555
</span>
5656
New CVE Records
5757
</a>
58-
<a class="cve-social-media-icon-with-text" href="https://twitter.com/CVEannounce/" target="_blank">
58+
<a class="cve-social-media-icon-with-text" href="https://x.com/CVEannounce" target="_blank">
5959
<span class="icon">
6060
<p id="x-twitterAnnounceIcon" class="is-hidden">x-twitter icon for @CVEannounce</p>
6161
<font-awesome-icon :icon="['fab', 'x-twitter']" aria-labelledby="x-twitterAnnounceIcon" aria-hidden="false" focusable="false"/>

src/views/ProgramOrganization/WorkingGroups.vue

Lines changed: 51 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -9,8 +9,9 @@
99
<ExternalLinkMessage/>
1010
<p>
1111
CVE Working Groups (WGs) actively focus on improving processes, workflows, and other aspects of the program as it continues to grow
12-
and expand. There are seven main WGs: Automation (AWG), CNA Organization of Peers (COOP), Outreach and Communications (OCWG),
13-
Quality (QWG), Strategic Planning (SPWG), Tactical (TWG), and Vulnerability Conference and Events (VCEWG).
12+
and expand. There are eight main WGs: Automation (AWG), CNA Organization of Peers (COOP), CVE Artificial Intelligence (CVEAI WG),
13+
Outreach and Communications (OCWG), Quality (QWG), Strategic Planning (SPWG), Tactical (TWG), and
14+
Vulnerability Conference and Events (VCEWG).
1415
</p>
1516
<p>
1617
Details about these WGs are found below including information on how to join, as well as links to documents, repositories,
@@ -136,6 +137,49 @@
136137
</article>
137138
</div>
138139
</div>
140+
<h2 :id="cvenavs['Program Organization']['submenu']['Working Groups']['items']['CVE Artificial Intelligence Working Group (CVEAI WG)']
141+
['anchorId']"
142+
class="title">
143+
{{cvenavs['Program Organization']['submenu']['Working Groups']['items']['CVE Artificial Intelligence Working Group (CVEAI WG)']
144+
['label']}}</h2>
145+
<p>
146+
The CVEAI WG is focused on defining swim lanes for AI vulnerability disclosure within CVE. This WG will discuss the concerns
147+
in defining what is within the responsibilities of the CVE Program. Because not all AI issues are appropriate for a CVE assignment,
148+
it will also try to define when other AI security-related initiatives are needed to address concerns outside the CVE Program.
149+
</p>
150+
<p>
151+
<span class="has-text-weight-bold">Membership Eligibility:</span> Per the CVEAI WG Charter, “Any active CVE-authorized program
152+
member may participate in the CVEAI. This includes Board members, CVE Numbering Authority (CNA) representatives,
153+
Authorized Data Publishers (ADP), and participants from the Secretariat’s organization. This WG is also open to public membership,
154+
including members of corporate vulnerability management programs, as well as VM related standards, initiatives and associations
155+
and others. It is also open to members of the AI community with expertise in AI and AI related security concerns.”
156+
</p>
157+
<div class="tile is-ancestor cve-task-tiles-container">
158+
<div class="tile is-parent cve-task-left-tile">
159+
<article class="tile is-child cve-border-dark-blue">
160+
<h3 class="title cve-task-tile-header">
161+
Documents
162+
</h3>
163+
<ul class="tile-body cve-task-tile-list">
164+
<li class="cve-task-tile-list-item">
165+
<router-link to="/Resources/Roles/WorkingGroups/CVEAIWG/CVEAIWG-Charter.pdf" target="_blank">CVEAI WG Charter</router-link>
166+
</li>
167+
</ul>
168+
</article>
169+
</div>
170+
<div class="tile is-parent">
171+
<article class="tile is-child cve-border-dark-blue">
172+
<h3 class="title cve-task-tile-header">
173+
Repositories and Projects
174+
</h3>
175+
<ul class="tile-body cve-task-tile-list">
176+
<li class="cve-task-tile-list-item">
177+
TBA
178+
</li>
179+
</ul>
180+
</article>
181+
</div>
182+
</div>
139183
<h2 :id="cvenavs['Program Organization']['submenu']['Working Groups']['items']['Outreach and Communications Working Group (OCWG)']
140184
['anchorId']" class="title">
141185
{{cvenavs['Program Organization']['submenu']['Working Groups']['items']['Outreach and Communications Working Group (OCWG)']['label']}}
@@ -371,9 +415,13 @@
371415
<td data-label="Working Group" style="width: 55%">CNA Organization of Peers (COOP)</td>
372416
<td data-label="Meeting Time">Every other Wednesday 2:00pm ET</td>
373417
</tr>
418+
<tr>
419+
<td data-label="Working Group" style="width: 55%">CVE Artificial Intelligence Working Group (CVEAI WG)</td>
420+
<td data-label="Meeting Time">Every other Monday 1:00pm ET</td>
421+
</tr>
374422
<tr>
375423
<td data-label="Working Group" style="width: 55%">Outreach and Communications Working Group (OCWG)</td>
376-
<td data-label="Meeting Time">Every other month on Monday 4:00pm ET / Every other month on Wednesday 8:00am ET</td>
424+
<td data-label="Meeting Time">Every Friday 9:00am ET</td>
377425
</tr>
378426
<tr>
379427
<td data-label="Working Group" style="width: 55%">Quality Working Group (QWG)</td>

src/views/ResourcesSupport/Resources.vue

Lines changed: 12 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -479,13 +479,18 @@
479479
</a>
480480
</li>
481481
<li>
482-
<router-link to="/Resources/Roles/WorkingGroups/SPWG/SPWG-Charter.pdf" target="_blank">
483-
Strategic Planning Working Group (SPWG) Charter (PDF, 0.2MB)
482+
<router-link to="/Resources/Roles/WorkingGroups/COOP/COOP-Charter.pdf" target="_blank">
483+
CNA Organization of Peers (COOP) Charter (PDF, 0.1MB)
484484
</router-link>
485485
</li>
486486
<li>
487-
<router-link to="/Resources/Roles/WorkingGroups/COOP/COOP-Charter.pdf" target="_blank">
488-
CNA Organization of Peers (COOP) Charter (PDF, 0.1MB)
487+
<router-link to="/Resources/Roles/WorkingGroups/CVEAIWG/CVEAIWG-Charter.pdf" target="_blank">
488+
CVE Artificial Intelligence Working Group (CVEAI WG) Charter (PDF, 0.1MB)
489+
</router-link>
490+
</li>
491+
<li>
492+
<router-link to="/Resources/Roles/WorkingGroups/OCWG/OCWG-Charter.pdf" target="_blank">
493+
Outreach and Communications Working Group (OCWG) Charter (PDF, 0.1MB)
489494
</router-link>
490495
</li>
491496
<li>
@@ -494,8 +499,8 @@
494499
</a>
495500
</li>
496501
<li>
497-
<router-link to="/Resources/Roles/WorkingGroups/OCWG/OCWG-Charter.pdf" target="_blank">
498-
Outreach and Communications Working Group (OCWG) Charter (PDF, 0.1MB)
502+
<router-link to="/Resources/Roles/WorkingGroups/SPWG/SPWG-Charter.pdf" target="_blank">
503+
Strategic Planning Working Group (SPWG) Charter (PDF, 0.2MB)
499504
</router-link>
500505
</li>
501506
<li>
@@ -606,7 +611,7 @@
606611
</h3>
607612
<p class="mb-0 ml-4 has-text-weight-bold">Feed of newly published CVE Records:</p>
608613
<ul class="mt-0 mb-0 tile-body cve-task-tile-list">
609-
<li><a href="https://twitter.com/CVEnew/" target="_blank">@CVEnew Twitter</a></li>
614+
<li><a href="https://x.com/CVEnew" target="_blank">@CVEnew on X</a></li>
610615
<li><a href='https://github.com/CVEProject/cvelistV5' target='_blank'>CVE List downloads (updated hourly)</a>
611616
cvelistV5 repository on GitHub</li>
612617
</ul>

0 commit comments

Comments
 (0)