Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / cveproject/cve-schema issues and pull requests

#361 - Remove example collection URLs from the CVE schema file

Pull Request - State: open - Opened by darakian 5 days ago - 6 comments

#360 - Discussions for namespace inclusion

Issue - State: closed - Opened by darakian 10 days ago - 3 comments
Labels: Needs Discussion

#359 - disallow matchCriteriaId in new CPE schema?

Issue - State: open - Opened by zmanion 24 days ago - 1 comment
Labels: enhancement, section:affected_product

#358 - Feature 310 examples

Pull Request - State: closed - Opened by ccoffin 30 days ago

#357 - Feature 322 cpe applicability

Pull Request - State: closed - Opened by ccoffin about 1 month ago

#356 - Feature 322 cpe applicability

Pull Request - State: closed - Opened by ccoffin about 1 month ago

#355 - Universe blockchain

Issue - State: closed - Opened by 7259324177 about 1 month ago - 2 comments

#354 - readme changes

Pull Request - State: closed - Opened by ccoffin about 1 month ago

#353 - Modify schema to enforce UTC and timezones

Issue - State: open - Opened by jayjacobs about 1 month ago - 2 comments
Labels: bug, section:dates

#352 - schema/support/schema2markmap/schema-bundle.js Update

Pull Request - State: closed - Opened by ccoffin about 1 month ago

#351 - Template_top.php

Issue - State: closed - Opened by Mookmillionz about 1 month ago - 1 comment

#350 - Related to #348 SSVC1.0.1 additions.

Pull Request - State: open - Opened by sei-vsarvepalli about 1 month ago - 3 comments

#349 - changed all example files to use CVE-1900-xxxx instead of CVE-1337-xxxx.

Pull Request - State: closed - Opened by ccoffin about 1 month ago

#348 - adding SSVC v1.0.1 production schema to the CVE Record metrics block.

Pull Request - State: open - Opened by ccoffin about 2 months ago - 5 comments

#345 - Add to the JSON Schema Landscape!

Issue - State: open - Opened by Relequestual about 2 months ago
Labels: enhancement

#343 - Move Disputed To CVE State

Issue - State: open - Opened by jgamblin about 2 months ago - 6 comments
Labels: enhancement, section:other, Needs Discussion

#342 - https://www.cve.org/Resources/Private/cve-public-key.txt

Issue - State: closed - Opened by fhar28 about 2 months ago - 1 comment
Labels: invalid

#341 - Specifiy CVE Description Format

Issue - State: open - Opened by jgamblin about 2 months ago - 2 comments
Labels: bug, section:description, Needs Discussion

#340 - Require CNA organization type, at least when type == vendor

Issue - State: open - Opened by zmanion 2 months ago - 8 comments
Labels: enhancement, section:other, Needs Discussion

#339 - The "source" element in adpContainer and cnaPublishedContainer seems to be incorrect or incomplete

Issue - State: open - Opened by sei-vsarvepalli 2 months ago - 1 comment
Labels: bug, section:source, Needs Discussion

#338 - Wayfair

Pull Request - State: closed - Opened by fhar28 3 months ago

#337 - 5.1.0 accepts "version" wildcarding

Issue - State: open - Opened by ElectricNroff 3 months ago
Labels: bug, section:affected_product

#336 - Incidencia

Issue - State: closed - Opened by 7259324177 3 months ago - 1 comment

#335 - added root cause tags and descriptions to cna and adp tag files

Pull Request - State: open - Opened by ccoffin 3 months ago

#334 - Require .cveMetadata.datePublished and .cveMetadata.dateUpdated in the schema

Issue - State: open - Opened by zmanion 3 months ago - 1 comment
Labels: bug, section:dates

#333 - Update README to make URLs clickable

Pull Request - State: open - Opened by kernelsmith 3 months ago - 1 comment

#331 - Proposed incorporation of NVD CPE Applicability syntax

Pull Request - State: open - Opened by andrewpollock 4 months ago

#330 - remove incorrect information about ADP status

Issue - State: closed - Opened by ElectricNroff 4 months ago - 1 comment

#327 - Move "x_generator" to an official and optional string value "generator"

Issue - State: open - Opened by jayjacobs 5 months ago
Labels: enhancement, Needs Discussion

#326 - incorrect branch name in validate-schema.yml

Issue - State: open - Opened by ElectricNroff 5 months ago - 2 comments
Labels: bug

#325 - Extending CVE with additional information not validating the CVE schema

Issue - State: open - Opened by adulau 5 months ago - 2 comments
Labels: question

#324 - 5.1.0 accepts lessThan 0 (seen in inverted ranges)

Issue - State: open - Opened by ElectricNroff 5 months ago
Labels: bug, section:affected_product

#323 - 5.1.0 accepts version "*" (usually where "0" was intended)

Issue - State: open - Opened by ElectricNroff 5 months ago - 2 comments
Labels: bug, section:affected_product

#322 - add support for CPE applicability statements

Issue - State: open - Opened by ElectricNroff 5 months ago
Labels: enhancement

#321 - Allow ADP container cpes array without requiring product/version or collectionURL/packageName

Issue - State: open - Opened by ccoffin 6 months ago - 7 comments
Labels: enhancement, section:affected_product

#320 - Underwhelmed by the misuse of versionType and version to support purl

Issue - State: open - Opened by prabhu 6 months ago - 3 comments
Labels: enhancement, section:affected_product

#319 - JSON values: float vs int

Issue - State: open - Opened by jayjacobs 6 months ago - 2 comments
Labels: bug

#318 - Drop support for optional data values starting with "x_"

Issue - State: open - Opened by jayjacobs 6 months ago - 7 comments
Labels: enhancement, Needs Discussion

#317 - containers.cna.source.defect has multiple data types

Issue - State: open - Opened by jayjacobs 6 months ago - 3 comments
Labels: bug, section:source

#316 - Require “cweId” Field

Issue - State: open - Opened by patrickmgarrity 6 months ago - 3 comments
Labels: enhancement, section:problemTypes, Needs Discussion

#313 - rejected example is inconsistent with 4.5.3.7 in CNA Rules 4.0

Issue - State: open - Opened by ElectricNroff 6 months ago
Labels: bug

#312 - container examples incorrectly include providerMetadata

Issue - State: open - Opened by ElectricNroff 6 months ago
Labels: bug

#310 - examples have CVE-1337 instead of CVE-1900

Issue - State: closed - Opened by ElectricNroff 6 months ago - 2 comments
Labels: bug, documentation

#307 - stray mention of non-".json" in validate-schema.yml

Issue - State: open - Opened by ElectricNroff 6 months ago
Labels: bug

#306 - race condition from no "let" in schema-bundle.js

Issue - State: open - Opened by ElectricNroff 6 months ago
Labels: bug

#305 - incorrect title of Mindmap

Issue - State: open - Opened by ElectricNroff 6 months ago
Labels: bug

#303 - 5.1.0 Record Format updates

Pull Request - State: closed - Opened by ccoffin 6 months ago - 3 comments

#302 - most CVE Records fail validation with recent ajv-formats

Issue - State: open - Opened by ElectricNroff 6 months ago
Labels: bug

#300 - 5.1.0 allows use of versionType purl with no syntax validation

Issue - State: open - Opened by ElectricNroff 7 months ago
Labels: bug

#298 - METABUG: Potential concrete data quality improvements for 5.2.0

Issue - State: open - Opened by andrewpollock 7 months ago - 2 comments
Labels: invalid

#294 - original assigner vs. owner

Issue - State: open - Opened by zmanion 8 months ago - 3 comments
Labels: bug, section:metadata, Needs Discussion

#293 - ADP content update bumps the date for the CVE record

Issue - State: open - Opened by zmanion 8 months ago
Labels: enhancement, section:dates, Needs Discussion

#292 - Clarify date fields

Issue - State: open - Opened by zmanion 8 months ago - 1 comment
Labels: documentation, enhancement, section:dates

#291 - Three dateUpdated fields, all set by Services

Issue - State: open - Opened by zmanion 8 months ago - 2 comments
Labels: bug, section:dates

#289 - Use UTC instead of GMT in JSON5

Issue - State: open - Opened by eslerm 8 months ago
Labels: bug, section:dates

#288 - 5.1.0 defines datestamp but doesn't use it

Issue - State: open - Opened by ElectricNroff 8 months ago
Labels: bug, section:dates

#287 - Update LICENSE.txt

Pull Request - State: open - Opened by PtintarcQ 8 months ago - 1 comment

#285 - Sync with upstream CVSS v4 bug fixes.

Issue - State: closed - Opened by chandanbn 9 months ago - 2 comments
Labels: bug

#283 - I'm

Issue - State: closed - Opened by mmtayyar 9 months ago - 1 comment
Labels: invalid

#280 - 5.1.0 allows use of versionType git without a repo field

Issue - State: open - Opened by ElectricNroff 9 months ago
Labels: bug, section:affected_product

#279 - 5.1.0 accepts versionType git without a Git commit hash

Issue - State: open - Opened by ElectricNroff 9 months ago
Labels: bug, section:affected_product

#277 - full-record-advanced-example.json Does Not Contain A Tags Field

Issue - State: open - Opened by nickspurry 9 months ago
Labels: documentation, enhancement

#276 - Delete schema/v5.0/CVE_JSON_5.0_schema.json

Pull Request - State: open - Opened by mmtayyar 9 months ago

#275 - Vulnerability Type: Configuration

Issue - State: open - Opened by opswright-labs 9 months ago
Labels: enhancement, section:configurations

#274 - v5.1.0-rc2 has two instances of "cve.mitre.org"

Issue - State: open - Opened by ElectricNroff 10 months ago
Labels: bug, documentation

#273 - v5.1.0-rc2 $id contains v5.0

Issue - State: open - Opened by ElectricNroff 10 months ago
Labels: bug, documentation

#272 - missing type "object" for 5.1.0-rc2 container subschemas

Issue - State: open - Opened by ElectricNroff 10 months ago
Labels: bug, documentation

#269 - 5.1.0 accepts user UUIDs even though User Registry doesn't exist

Issue - State: open - Opened by ElectricNroff 11 months ago - 4 comments
Labels: bug, section:credits

#266 - 5.1.0 accepts multiple versions for a single status change

Issue - State: open - Opened by ElectricNroff 11 months ago - 1 comment
Labels: bug, section:affected_product

#264 - 5.1.0 accepts versionType semver for non-semver lessThan

Issue - State: open - Opened by ElectricNroff 11 months ago
Labels: bug, section:affected_product

#263 - 5.1.0 accepts versionType semver for non-semver data

Issue - State: open - Opened by ElectricNroff 11 months ago
Labels: bug, section:affected_product

#261 - 5.1.0 accepts an object (instead of a string) for source.discovery

Issue - State: open - Opened by ElectricNroff 11 months ago - 1 comment
Labels: enhancement, section:source

#260 - 5.1.0 accepts language of "eng" (instead of "en") in most places

Issue - State: open - Opened by ElectricNroff 11 months ago - 3 comments
Labels: bug, section:other

#243 - CVE Records that don't comply with 5.0.1

Issue - State: closed - Opened by ElectricNroff over 1 year ago - 1 comment

#232 - Prevent descriptions from containing only whitespace

Issue - State: open - Opened by slubar over 1 year ago - 8 comments
Labels: Needs Discussion

#215 - cannot specify that a range includes at least one affected version

Issue - State: open - Opened by ElectricNroff almost 2 years ago - 2 comments
Labels: Needs Discussion

#210 - confusion about ssZZZZ in date-time format

Issue - State: closed - Opened by ElectricNroff almost 2 years ago - 1 comment

#204 - Add a way for marking a version range as end-of-life

Issue - State: closed - Opened by raschi-de about 2 years ago - 5 comments
Labels: enhancement, section:affected_product, Needs Discussion

#200 - Concerns about size of supportingMedia

Issue - State: open - Opened by kurtseifried about 2 years ago - 7 comments
Labels: Needs Discussion

#186 - is datePublished possibly ambiguous?

Issue - State: open - Opened by ElectricNroff over 2 years ago - 2 comments

#184 - Add `known-exploited` or similar as a container tag

Issue - State: open - Opened by david-waltermire over 2 years ago - 4 comments
Labels: enhancement, Needs Discussion

#181 - Develop a list of best practices

Issue - State: closed - Opened by david-waltermire over 2 years ago - 2 comments

#178 - Listed products in CVE upconversion is not the same

Issue - State: closed - Opened by KarmzL over 2 years ago - 4 comments

#173 - Support PURL as identifier

Issue - State: closed - Opened by fortresslabs over 2 years ago - 11 comments

#170 - Translate refsource to a reasonable tag

Issue - State: closed - Opened by chandanbn over 2 years ago - 3 comments

#162 - JSON5.0 - CVSS hard coded version numbers

Issue - State: closed - Opened by MrSeccubus over 2 years ago - 7 comments

#144 - CERT/CC SSVC metrics for CVE using ADP

Issue - State: open - Opened by sei-vsarvepalli over 2 years ago - 9 comments

#140 - JSON 5.1 - introduce disputedReasons

Issue - State: open - Opened by ElectricNroff almost 3 years ago
Labels: enhancement, Needs Discussion

#139 - Persisting CNA and ADP data in a REJECTED record

Issue - State: closed - Opened by david-waltermire almost 3 years ago - 1 comment
Labels: enhancement, version:5

#121 - Unique problem type descriptions

Issue - State: closed - Opened by chandanbn about 3 years ago - 2 comments

#113 - Add home_page data element

Issue - State: closed - Opened by david-a-wheeler about 3 years ago - 3 comments

#107 - Add property "productId" (of uuidType) to "product" object

Issue - State: closed - Opened by dim0x69 about 3 years ago - 5 comments

#102 - CVE JSON schema release candidate 4 documents update.

Pull Request - State: closed - Opened by chandanbn about 3 years ago

#101 - CVE v5 Schema - Flattening file references for programmatic schema validators

Issue - State: closed - Opened by jwhitmore-mitre about 3 years ago - 2 comments
Labels: enhancement, version:5

#100 - schema/v5.0: introduce computable version ranges

Pull Request - State: closed - Opened by rsc about 3 years ago - 8 comments

#99 - schema/v5.0: flatten affected into array of products

Pull Request - State: closed - Opened by rsc over 3 years ago - 7 comments