What is the OpenNMS CNA?
OpenNMS is a CVE Numbering Authority (CNA) — an organization authorized to assign CVE IDs to vulnerabilities in its scope. It has published 16 CVE records since 2023.
How many CVEs has OpenNMS published?
OpenNMS has published 16 CVE records, including 2 in the last two years.
What is OpenNMS's CVE data quality grade?
RadicalNotion.AI grades OpenNMS's CVE data quality as A, with an overall completeness score of 100%. This reflects how consistently its CVE records include vendor (100%), product (100%), CVSS (100%), and CWE (100%) information.
What products does OpenNMS publish CVEs for?
OpenNMS most frequently publishes CVEs for Horizon, Meridian, opennms, org.opennms:opennms-webapp, org.opennms:opennms.
Which vendors does OpenNMS cover?
OpenNMS publishes CVEs across 3 distinct vendors, most often The OpenNMS Group, opennms, org.opennms, org.opennms.core.
Is OpenNMS actively publishing CVEs?
OpenNMS is currently active, based on 2 CVEs in the last two years.
What is the average severity of OpenNMS's CVEs?
The average CVSS base score across OpenNMS's scored CVEs is 6.6.
Are any of OpenNMS's CVEs in CISA's Known Exploited Vulnerabilities catalog?
No. None of OpenNMS's CVEs are currently listed in CISA's Known Exploited Vulnerabilities (KEV) catalog.
What are the most common weakness types in OpenNMS's CVEs?
OpenNMS's CVEs most often map to these CWE weakness types: CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')), CWE-20 (Improper Input Validation), CWE-352 (Cross-Site Request Forgery (CSRF)), CWE-532 (Insertion of Sensitive Information into Log File).
How does OpenNMS rank among CNAs?
By total CVE volume, OpenNMS ranks #268 of 370 CNAs, and it reports more complete CVE records than 60% of all CNAs.