Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-129 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 124 | 54 | 0 |
▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▂▄▃▂▂▂▃▂▂▁▂▂▁▁▁▂▁▂▁▁▁▂▁▁▁▃▄█▃
2025-09 4 · 2025-10 1 · 2025-11 0 · 2025-12 0 · 2026-01 2 · 2026-02 0 · 2026-03 1 · 2026-04 0 · 2026-05 6 · 2026-06 10 · 2026-07 28 · 2026-08 7
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2021-38654 | 7.8 | 93.0 | — | Microsoft Office Visio Remote Code Execution Vulnerability |
| CVE-2023-2008 | 8.2 | 60.4 | — | Kernel: udmabuf: improper validation of array index leading to local privilege escalation |
| CVE-2026-14191 | 7.8 | 56.4 | — | WinRAR / UnRAR RAR5 recovery-volume (.rev) out-of-bounds heap write in RecVolumes5::Rea… |
| CVE-2026-3083 | 8.8 | 54.0 | — | GStreamer rtpqdm2depay Out-Of-Bounds Write Remote Code Execution Vulnerability |
| CVE-2024-38587 | 7.8 | 53.4 | — | speakup: Fix sizeof() vs ARRAY_SIZE() bug |
| CVE-2026-22859 | 5.6 | 52.8 | — | FreeRDP has a heap-buffer-overflow in urb_select_configuration |
| CVE-2025-21692 | 7.8 | 46.6 | — | net: sched: fix ets qdisc OOB Indexing |
| CVE-2026-45799 | 7.5 | 43.4 | — | Wire: skipGroup() missing negative-length check allows 10-byte payload to crash any Wir… |
| CVE-2026-56111 | 8.3 | 43.2 | — | Marlin Firmware 2.1.2.7 Out-of-Bounds Write via M421 G-code Handler |
| CVE-2024-38623 | 7.8 | 42.3 | — | fs/ntfs3: Use variable length array instead of fixed size |
| CVE-2026-70634 | 7.2 | 34.7 | — | TimescaleDB 2.29.1 Out-of-Bounds Read Information Disclosure via Dictionary Compression… |
| CVE-2026-46598 | 5.3 | 34.6 | — | Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent |
| CVE-2025-38146 | 7.8 | 33.6 | — | net: openvswitch: Fix the dead loop of MPLS parse |
| CVE-2026-15685 | 7.5 | 32.4 | — | Ollama downloadBlob Improper Validation of Array Index Denial-of-Service Vulnerability |
| CVE-2026-73564 | 8.7 | 31.7 | — | frp: Unauthenticated Remote Denial of Service in the frp SSH Tunnel Gateway via Integer… |
| CVE-2023-53192 | 7.8 | 31.3 | — | vxlan: Fix nexthop hash size |
| CVE-2024-49930 | 7.8 | 30.9 | — | wifi: ath11k: fix array out-of-bound access in SoC stats |
| CVE-2026-70635 | 7.1 | 29.2 | — | TimescaleDB 2.29.1 Out-of-Bounds Read DoS via Bulk Dictionary Decompression Negative Index |
| CVE-2024-36921 | 7.8 | 27.6 | — | wifi: iwlwifi: mvm: guard against invalid STA ID on removal |
| CVE-2022-49022 | 7.8 | 27.4 | — | wifi: mac8021: fix possible oob access in ieee80211_get_rate_duration |
| Vendor | CVEs |
|---|---|
| linux | 83 |
| geovision | 11 |
| imagemagick | 2 |
| nvidia | 2 |
| timescale | 2 |
| capstone-engine | 1 |
| deltaww | 1 |
| deskflow | 1 |
| eugeny | 1 |
| f5 | 1 |
| fatedier | 1 |
| foxit software | 1 |
| freerdp | 1 |
| golang.org/x/crypto | 1 |
| gstreamer | 1 |