Reference page — cumulative record through Thursday, October 8, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-1035
Weakness type CWE-1035 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 13 | 13 | 0 |
Monthly trend
█▁
2026-09 13 · 2026-10 0
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-93579 | 6.5 | 58.3 | — | Io.netty/netty-codec-http2: netty: http/2 header field values are not validated by defa… |
| CVE-2026-93558 | 7.5 | 51.4 | — | Io.netty/netty-codec-http: netty: unbounded per-connection queue growth in websocketser… |
| CVE-2026-93564 | 7.5 | 44.5 | — | Io.netty/netty-codec-haproxy: netty: haproxy proxy-v2 nested-tlv grandchild bytebuf ref… |
| CVE-2026-93566 | 6.5 | 39.4 | — | Io.netty/netty-codec-http: netty: http request smuggling due to control characters in t… |
| CVE-2026-93565 | 7.5 | 37.5 | — | Io.netty/netty-codec-http: netty rtspdecoder method-token smuggling via trailing contro… |
| CVE-2026-93494 | 7.5 | 33.1 | — | Io.netty/netty-codec-stomp: netty: bytebuf leak in stompsubframedecoder when a frame bo… |
| CVE-2026-93560 | 7.5 | 33.1 | — | Io.netty/netty-codec-stomp: netty: stomp codec content-length long-to-int truncation ca… |
| CVE-2026-93562 | 6.5 | 33.1 | — | Io.netty/netty-codec-http: netty: incomplete validation of malformed transfer-encoding … |
| CVE-2026-93575 | 7.5 | 30.7 | — | Io.netty/netty-codec-mqtt: netty: resource exhaustion in mqttdecoder |
| CVE-2026-93492 | 5.3 | 28.9 | — | Io.netty/netty-codec-http2: netty: http/2 hpackencoder dos with large table size |
| CVE-2026-93563 | 7.5 | 23.5 | — | Io.netty/netty-codec-smtp: netty: unbounded multi-line response accumulation in smtpres… |
| CVE-2026-93561 | 6.5 | 19.9 | — | Io.netty/netty-codec-memcache: netty: memcache binary codec signed/unsigned type mismat… |
| CVE-2026-93578 | 5.9 | 12.3 | — | Io.netty/netty-handler-ssl-ocsp: netty: missing extended key usage (eku) check in ocsp … |
Most-affected vendors
| Vendor | CVEs |
|---|---|
| red hat | 13 |