Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-1025 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 4 | 4 | 0 |
█▅▅
2026-06 2 · 2026-07 1 · 2026-08 1
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2025-71377 | 8.7 | 31.6 | — | stoatchat before 20250210-1 Unrestricted Message History Fetch |
| CVE-2026-9800 | 8.1 | 29.0 | — | Keycloak-policy-enforcer: keycloak policy enforcer: authorization bypass via incorrect … |
| CVE-2026-75840 | 8.7 | 24.3 | — | ArcadeDB before 26.8.1 Arbitrary File Read via Unescaped Regex |
| CVE-2026-48860 | 7.5 | 9.5 | — | Distribution-over-TLS LAN allowlist silently bypassed due to sockname/peername confusio… |
| Vendor | CVEs |
|---|---|
| arcadedata | 1 |
| erlang | 1 |
| red hat | 1 |
| stoatchat | 1 |