Did you know that DMTF has a Security Response Task Force (SRTF) and a reporting system for security issues? The Task Force is responsible for coordinating and managing reported security issues or vulnerabilities related to DMTF standards and its open-source sample implementations. As part of this effort, the organization has developed a security issue reporting system that evaluates and addresses the reported concerns. Security issues are reported via the Feedback Portal.
We have a repository dedicated to announcing all security issues addressed by the task force. This page lists the CVE IDs for all issues, along with links to the patches and changes. You will also find the vulnerabilities explained in great detail. For more information about the SRTF, please visit the Security Issue Reporting Process page.
Access to the security announcement repository is granted upon request by DMTF Administration with a corporate email address. Be sure to sign up for an account so that you’re updated on all reported security issues.