Skip to content

Commit 9224395

Browse files
authored
Merge pull request #180 from graphql-java/cna-updates
Add CNA blog and security information
2 parents 2de9e94 + f9bc9c8 commit 9224395

File tree

2 files changed

+11
-0
lines changed

2 files changed

+11
-0
lines changed
Lines changed: 9 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,9 @@
1+
---
2+
title: "GraphQL Java is a CVE Numbering Authority"
3+
authors: donna
4+
slug: cna
5+
---
6+
7+
We are please to announce GraphQL Java is now the CVE Numbering Authority (CNA) for GraphQL Java, Java DataLoader, GraphQL Java Extended Scalars, and GraphQL Java Extended Validation.
8+
9+
See the CVE.org press release: https://www.cve.org/Media/News/item/news/2024/12/03/GraphQL-Java-Added-as-CNA

src/pages/security.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -29,6 +29,8 @@ Please allow time for the maintainers to review vulnerability reports, please no
2929

3030
## Common Vulnerabilities and Exposures (CVEs)
3131

32+
[GraphQL Java is the CVE Numbering Authority (CNA)](https://www.cve.org/PartnerInformation/ListofPartners/partner/graphql-java) for GraphQL Java, Java DataLoader, GraphQL Java Extended Scalars, and GraphQL Java Extended Validation.
33+
3234
#### CVE-2024-40094
3335
Patched by versions 21.5, 20.9, 19.11, build version 0.0.0-2024-03-22T04-18-12-97743bc, or later
3436
* [Announcement on GitHub](https://github.com/graphql-java/graphql-java/discussions/3641)

0 commit comments

Comments
 (0)