OASIS Common Security Advisory Framework (CSAF) TC

 View Only
  • 1.  TC meeting 2026-02-25

    Posted 02-24-2026 11:19

    Dear colleagues,

    this is a short reminder and request for this week's TC meeting: Please familiarize yourself with current open issues (https://github.com/oasis-tcs/csaf/issues) and pull requests (https://github.com/oasis-tcs/csaf/pulls).

    The most important issues and pull request to review are:

    - Editor revision for TC meeting 2026-02-25: https://github.com/oasis-tcs/csaf/pull/1292
    - Extensions: https://github.com/oasis-tcs/csaf/pull/1165
    - Proposal to improve support for cloud native applications and add "Occurrence"-concept (aka: Relationship to Product Path): https://github.com/oasis-tcs/csaf/issues/1177
    - Conformance target: CSAF RVISC ID Updater: https://github.com/oasis-tcs/csaf/issues/1313
    - Initial steps to enhance the presentation of the CSAF model (aka JSON code to Outline structure): https://github.com/oasis-tcs/csaf/pull/1221
    - Clarify use case for sorting of changes.csv: https://github.com/oasis-tcs/csaf/issues/1280

    As you see, there are many things to discuss and vote on. If you have any comments or feedback (also confirming one;-)), we kindly request to try to put that into the appropriate issue or pull request before the meeting.

    We are going to suggest to start a public review with the editor revision resulting from our decisions tomorrow.

    Many thanks in advance.

    Best wishes,

    Thomas



    ------------------------------
    Thomas Schmidt
    Subject Matter Expert
    Federal Office for Information Security (BSI) Germany
    ------------------------------