boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-1285

Weakness type CWE-1285 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
13110

Monthly trend

▃▃▁▁▁▁█▁▆▆▁█▃▁

2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 3 · 2026-04 0 · 2026-05 2 · 2026-06 2 · 2026-07 0 · 2026-08 3 · 2026-09 1 · 2026-10 0

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2026-322857.560.7—Denial of service in github.com/buger/jsonparser
CVE-2026-322867.549.4—Denial of service in github.com/jackc/pgproto3/v2
CVE-2025-23995.942.4—Denial of Service (DoS) Vulnerability in Mitsubishi Electric CNC Series
CVE-2026-453527.539.7—cpp-httplib DoS: Negative chunk-size in chunked Transfer-Encoding
CVE-2026-535308.734.8—ratex-parser panics on `\verb` with a multibyte delimiter (UTF-8 byte-boundary slice)
CVE-2025-82914.329.4—ZIP64 End of Central Directory (EOCD) Locator record offset not checked
CVE-2026-91006.020.8—Heap memory out of bounds read and crash in C Driver legacy GridFS file reader
CVE-2025-91898.518.9—Out Of Bounds Write when parsing a DSB file with Digilent DASYLab
CVE-2026-126818.917.3——
CVE-2026-184858.55.4—Local Privilege Escalation in NI-PAL
CVE-2026-80368.43.9—Local privilege escalation in NI-PAL
CVE-2026-144795.53.7—Denial of Service in Autodesk Installer IPC Channel
CVE-2026-319125.51.0—OOBR in libpcap before 1.10.7

Most-affected vendors