boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-123

Weakness type CWE-123 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals
CVEs all-timeCVEs YTDKEV all-time
871

Monthly trend

▃▁▁▁▁▁▁▁▁▁▁▁▁▁▆█▃▃

2025-09 0 · 2025-10 0 · 2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 0 · 2026-05 2 · 2026-06 3 · 2026-07 1 · 2026-08 1

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2025-222258.260.0KEVVMware ESXi
CVE-2026-432848.899.8xfrm: esp: avoid in-place decrypt on shared skb frags
CVE-2026-463007.893.6net: skbuff: preserve shared-frag marker during coalescing
CVE-2026-301219.125.4
CVE-2026-452577.85.0Arbitrary file overwrite via the KTLS receive path
CVE-2026-463237.83.6net: gro: don't merge zcopy skbs
CVE-2026-474737.43.0
CVE-2026-204696.01.8

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
linux3
freebsd1
mediatek1
nvidia1