Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-120 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 236 | 203 | 1 |
▁▁▁▁▁▁▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▅█▆▄
2025-09 1 · 2025-10 0 · 2025-11 2 · 2025-12 0 · 2026-01 3 · 2026-02 1 · 2026-03 3 · 2026-04 0 · 2026-05 38 · 2026-06 73 · 2026-07 52 · 2026-08 33
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2025-20333 | 9.9 | 98.5 | KEV | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense |
| CVE-2023-46847 | 7.5 | 99.8 | — | Squid: denial of service in http digest authentication |
| CVE-2025-12686 | 9.8 | 85.1 | — | — |
| CVE-2026-34355 | 7.5 | 63.5 | — | Apache HTTP Server: mod_proxy_html buffer overflow |
| CVE-2025-43433 | 8.8 | 63.1 | — | — |
| CVE-2026-42536 | 7.5 | 59.6 | — | Apache HTTP Server: mod_xml2enc heap overflow |
| CVE-2021-47854 | 8.7 | 59.3 | — | DD-WRT 45723 - UPNP Buffer Overflow |
| CVE-2024-5974 | 8.6 | 58.9 | — | Firebox Authenticated Buffer Overflow Vulnerability |
| CVE-2025-43441 | 4.3 | 56.7 | — | — |
| CVE-2024-38541 | 7.8 | 56.7 | — | of: module: add buffer overflow check in of_modalias() |
| CVE-2022-49058 | 7.8 | 55.8 | — | cifs: potential buffer overflow in handling symlinks |
| CVE-2021-47107 | 7.8 | 55.2 | — | NFSD: Fix READDIR buffer overflow |
| CVE-2026-12806 | 7.4 | 53.9 | — | Edimax BR-6478AC V2 POST Request formWlSiteSurvey buffer overflow |
| CVE-2021-47347 | 7.8 | 53.9 | — | wl1251: Fix possible buffer overflow in wl1251_cmd_scan |
| CVE-2024-49996 | 7.8 | 53.4 | — | cifs: Fix buffer overflow when parsing NFS reparse points |
| CVE-2026-3082 | 7.8 | 53.3 | — | GStreamer JPEG Parser Heap-based Buffer Overflow Remote Code Execution Vulnerability |
| CVE-2026-2920 | 7.8 | 52.9 | — | GStreamer ASF Demuxer Heap-based Buffer Overflow Remote Code Execution Vulnerability |
| CVE-2026-10126 | 7.4 | 52.2 | — | Edimax BR-6478AC POST Request formQoS buffer overflow |
| CVE-2026-59250 | 8.3 | 51.5 | — | Megaco flex scanner buffer overflow via oversized property parm name |
| CVE-2026-27459 | 7.2 | 50.5 | — | pyOpenSSL DTLS cookie callback buffer overflow |