boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-1023

Weakness type CWE-1023 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals
CVEs all-timeCVEs YTDKEV all-time
771

Monthly trend

▃▁▁█▃▃

2026-03 1 · 2026-04 0 · 2026-05 0 · 2026-06 4 · 2026-07 1 · 2026-08 1

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2026-74736.963.3KEVArista EOS Unexpected Tunnel Protocol Decapsulation and Forwarding Bypass
CVE-2026-45999.339.3
CVE-2026-242557.531.8
CVE-2026-485872.328.6Potential exposure of private data via whitespace padding in Vary header
CVE-2026-487615.319.0Symfony: HtmlSanitizer UrlAttributeSanitizer Misses URL Attributes on <object>, <applet…
CVE-2026-538396.018.5OpenClaw < 2026.5.7 - Hostname Prefix Matching Bypass in Trusted Retry Endpoint Validation
CVE-2026-538596.011.6OpenClaw < 2026.5.26 - Hostname Validation Bypass via Trailing-Dot Inconsistency

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
openclaw2
arista networks1
djangoproject1
nvidia1
symfony1