boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Thursday, October 8, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-1035

Weakness type CWE-1035 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
13130

Monthly trend

█▁

2026-09 13 · 2026-10 0

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2026-935796.558.3—Io.netty/netty-codec-http2: netty: http/2 header field values are not validated by defa…
CVE-2026-935587.551.4—Io.netty/netty-codec-http: netty: unbounded per-connection queue growth in websocketser…
CVE-2026-935647.544.5—Io.netty/netty-codec-haproxy: netty: haproxy proxy-v2 nested-tlv grandchild bytebuf ref…
CVE-2026-935666.539.4—Io.netty/netty-codec-http: netty: http request smuggling due to control characters in t…
CVE-2026-935657.537.5—Io.netty/netty-codec-http: netty rtspdecoder method-token smuggling via trailing contro…
CVE-2026-934947.533.1—Io.netty/netty-codec-stomp: netty: bytebuf leak in stompsubframedecoder when a frame bo…
CVE-2026-935607.533.1—Io.netty/netty-codec-stomp: netty: stomp codec content-length long-to-int truncation ca…
CVE-2026-935626.533.1—Io.netty/netty-codec-http: netty: incomplete validation of malformed transfer-encoding …
CVE-2026-935757.530.7—Io.netty/netty-codec-mqtt: netty: resource exhaustion in mqttdecoder
CVE-2026-934925.328.9—Io.netty/netty-codec-http2: netty: http/2 hpackencoder dos with large table size
CVE-2026-935637.523.5—Io.netty/netty-codec-smtp: netty: unbounded multi-line response accumulation in smtpres…
CVE-2026-935616.519.9—Io.netty/netty-codec-memcache: netty: memcache binary codec signed/unsigned type mismat…
CVE-2026-935785.912.3—Io.netty/netty-handler-ssl-ocsp: netty: missing extended key usage (eku) check in ocsp …

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
red hat13