diff --git a/docs/security/vendor-dispositions/cve-2024-7036.mdx b/docs/security/vendor-dispositions/cve-2024-7036.mdx index 16554353..91b9b8f9 100644 --- a/docs/security/vendor-dispositions/cve-2024-7036.mdx +++ b/docs/security/vendor-dispositions/cve-2024-7036.mdx @@ -35,7 +35,8 @@ This CVE was **withdrawn by its issuing CNA** after the dispute was escalated to | 2026-08-03 | Open WebUI follows up with huntr / Protect AI. No response is received and the record is unchanged. | | 2026-08-08 | With no response from huntr / Protect AI, Open WebUI escalates this record to the CVE Program Root. | | 2026-08-12 | The CVE Program opens a formal dispute with huntr / Protect AI under CVE Program Rule 4.1 (Vulnerability Determination) and requests the CNA's response. | -| 2026-08-13 | Officially rejected huntr / Protect AI withdraws the record and it is updated on cve.org. **The CVE record is now officially REJECTED.** | +| 2026-08-12 | huntr / Protect AI replies to the CVE Program and agrees to withdraw the record. | +| 2026-08-13 | Officially rejected The record is updated on cve.org. **The CVE record is now officially REJECTED.** | The record is now in the **REJECTED** state on cve.org, and that state propagates to NVD and downstream feeds. No action is required from users, and the CVE should not be treated as an Open WebUI vulnerability.