Skip to content

CVEProject/consumer-working-group

View on GitHub ↗Related repositories →

active 2025-09-182026-05-25 (UTC)

Partial coverage11,753 / 13,028 hourly files (90%) · 2 absent upstream · 1,271 failed, retryable2025-02-142026-08-10 (UTC)— sampled evenly across the window, so rankings and trends hold; absolute counts scale up.
Events
29
Pushes
2
Pull requests
0
Issues
13
Stars
4
Forks
0

Activity over time

Daily event counts in the loaded window

Line chart, 251 days from 2025-07-18 to 2026-05-25. Pushes: 2 total, peak 1 in a day. Pull requests: 0 total, peak 0 in a day. Issues: 13 total, peak 3 in a day. Comments: 8 total, peak 3 in a day. Stars: 4 total, peak 1 in a day.

  • Pushes
  • Pull requests
  • Issues
  • Comments
  • Stars

Stars, PRs, issues and forks are under-captured in the later part of this window. GH Archive progressively stopped capturing non-push events during 2026 — −95% or worse by the end of the window. Every series here except Pushes fades for that reason, so a decline above reflects the archive, not this repository. Pushes stay reliable throughout, so read them, and the contributor counts derived from them, as the real signal. Data health has the measurements.

Top contributors

Pushes, PRs, issues, reviews and comments — stars and forks excluded, so this is contribution rather than popularity

ContributorContributionsPushesPRsComments
patrickmgarrity6002
boblord5001
zmanion3003
gyehuda2000
jayjacobs2200
Tomalrich2001
jess-lowe1001
kandji-candace1000
karsten-klein1000

Recent activity

Latest issues, pull requests and releases

  • Issue comment#19Tomalrich2026-02-13 16:23
    User Story: How can we automate consumer use of CVEs with machine readable version ranges?
  • Issue#21karsten-klein2026-02-01 20:51
    User Story: Leveraging the CVE Program to Bridge the NVD Enrichment Gap for CRA Compliance
  • Issue#20Tomalrich2026-01-24 22:22
    User story: Missing CPE names
  • Issue comment#16boblord2025-11-15 23:39
    User Story: OSV open source vulnerability tracking
  • Issue#16boblord2025-11-13 04:42
    User Story: OSV open source vulnerability tracking
  • Issue#14boblord2025-11-06 19:26
    User Story: Product Architect – Energy Sector Software
  • Issue#13boblord2025-11-06 15:01
    User story: OSV developer
  • Issue#12gyehuda2025-11-05 19:12
    User Story: CVEs that are published by mistake and not revoked
  • Issue#10gyehuda2025-11-03 22:01
    User Story: The CPE is too broad
  • Issue#9boblord2025-10-30 19:32
    User story: vulnerability management platform developer
  • Issue comment#3patrickmgarrity2025-10-03 15:15
    Reserved CVE's Published Timely
  • Issue comment#3patrickmgarrity2025-10-03 13:57
    Reserved CVE's Published Timely
  • Issue comment#1jess-lowe2025-10-03 00:29
    Consumers need reliable versions reported
  • Issue comment#2zmanion2025-10-02 23:30
    Consumers need timely CVE disclosures
  • Issue comment#1zmanion2025-10-02 23:29
    Consumers need reliable versions reported
  • Issue comment#3zmanion2025-10-02 23:26
    Reserved CVE's Published Timely
  • Issue#6patrickmgarrity2025-09-19 01:10
    Complete & Accurate CWE Data
  • Issue#5patrickmgarrity2025-09-19 00:48
    Ensure CNA's publish their vulnerability disclosures publicly and all references comply with this requirement
  • Issue#4patrickmgarrity2025-09-18 21:31
    N/A / Null / Inaccurate information in the product, vendor and version fields.
  • Issue#3patrickmgarrity2025-09-18 21:23
    Reserved CVE's Published Timely
  • Issue#2kandji-candace2025-09-18 15:57
    Consumers need timely CVE disclosures

Totals cover only the window loaded into ClickHouse and count events, not GitHub's lifetime totals — 4 stars here means stars gained during the window, not the repo's star count.