boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-1392

Weakness type CWE-1392 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals
CVEs all-timeCVEs YTDKEV all-time
18170

Monthly trend

▂▁▁▂▁▅▆█▁

2025-12 1 · 2026-01 0 · 2026-02 0 · 2026-03 1 · 2026-04 0 · 2026-05 4 · 2026-06 5 · 2026-07 7 · 2026-08 0

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2026-584539.375.2JAIOTlink C492A-W6 4.8.30.57701411 Hard-coded Credentials via anyka_ipc
CVE-2026-419399.353.8Care Everywhere Gateway 14.3.10 Hard-coded Credentials RCE via WildFly
CVE-2026-584669.341.1AutoBangumi < 3.2.8 - Hard-coded Default Credentials via add_default_user()
CVE-2026-447619.138.6Insecure Sample Credentials in SAP Commerce Cloud
CVE-2026-685039.832.9LazyOwn: Default C2 Operator Credentials Enable Administrative Access to C2 Dashboard
CVE-2026-318378.731.1Istio JWKS resolver to prevent private key material from being exposed when JWKS fetch …
CVE-2018-251479.327.9Microhard Systems IPn4G 1.1.0 Default Credentials Authentication Bypass
CVE-2026-463869.919.7OpenProject: Pre-authentication RCE in openproject/openproject Docker image via default…
CVE-2025-362217.519.1Vulnerabilities exists in IBM Cloud Pak for Data System (CPDS 1.0) - Cyclops.
CVE-2026-450399.819.1RustFS: Internode RPC HMAC secret falls back to public default credential, enabling pee…
CVE-2026-98448.815.3Vulnerability in navify® Digital Pathology
CVE-2026-31449.814.6IBM API Connect Default Credentials
CVE-2026-429418.713.6MacGregor Voyage Data Recorder (VDR) G4e Use of Default Credentials
CVE-2026-500058.39.8Brickcom Cameras Use of Default Credentials
CVE-2026-653138.17.5Use of hard-coded VNC credentials in the engineering-workstation provisioning
CVE-2026-73657.82.4IBM Operations Analytics - Log Analysis is affected by Information disclosure due to de…
CVE-2026-442734.41.2
CVE-2026-326527.80.9

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
ibm3
dell2
andritz1
brickcom1
care everywhere1
danelec1
estrellaxd1
grisuno1
istio1
jaiotlink1
microhard systems1
opf1
roche diagnostics1
rustfs1
sap_se1