boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-119

Weakness type CWE-119 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals
CVEs all-timeCVEs YTDKEV all-time
3583344

Monthly trend

▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁██▇▇

2025-09 0 · 2025-10 0 · 2025-11 2 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 1 · 2026-04 1 · 2026-05 85 · 2026-06 90 · 2026-07 83 · 2026-08 74

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2023-49667.5100.0KEVUnauthenticated sensitive information disclosure
CVE-2020-079610.0100.0KEVMicrosoft SMBv3
CVE-2015-25468.295.5KEVMicrosoft Win32k
CVE-2021-319797.890.8KEVWindows Kernel Elevation of Privilege Vulnerability
CVE-2023-524407.897.5ksmbd: fix slub overflow in ksmbd_decode_ntlmssp_auth_blob()
CVE-2026-101878.993.9Totolink N300RH Web Management wireless.so setWiFiBasicConfig stack-based overflow
CVE-2026-114999.393.3Tenda HG7HG9/HG10 formDOMAINBLK stack-based overflow
CVE-2026-114988.789.1Tenda HG7HG9/HG10 Web Management voip_other_set asp_voip_OtherSet stack-based overflow
CVE-2026-101797.487.1TRENDnet TEW-432BRP formSetWlanEncrypt stack-based overflow
CVE-2013-02706.586.9Keystone: openstack keystone: denial of service via large http request with long tenant…
CVE-2025-434338.863.1
CVE-2026-757849.360.7TRENDnet TEW-WLC100 HTTP Header nginx FUN_0040da4c stack-based overflow
CVE-2023-524348.060.7smb: client: fix potential OOBs in smb2_parse_contexts()
CVE-2026-748439.359.1Wavlink WN531P3/WN535M1 Export Pingortrace CGI export_pingortrace.cgi strcpy stack-base…
CVE-2025-434414.356.7
CVE-2026-100637.455.4TRENDnet TEW-432BRP formWPS stack-based overflow
CVE-2026-100627.454.9TRENDnet TEW-432BRP formSetRoute stack-based overflow
CVE-2026-128067.453.9Edimax BR-6478AC V2 POST Request formWlSiteSurvey buffer overflow
CVE-2026-157018.953.3Totolink NR1800X lighttpd formLogout.htm Form_Logout stack-based overflow
CVE-2026-101267.452.2Edimax BR-6478AC POST Request formQoS buffer overflow

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
apple44
edimax41
tenda41
mozilla35
trendnet23
utt15
linux12
totolink11
shibby10
gnu7
open asset import library7
google5
wavlink5
omec-project4
radareorg4