Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-1427
Weakness type CWE-1427 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 5 | 5 | 0 |
Monthly trend
█▁▁
2026-08 5 · 2026-09 0 · 2026-10 0
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-78379 | 9.2 | 45.5 | — | Consent bypass in python_repl tool via batch kwargs forwarding in Amazon Strands Agents… |
| CVE-2026-18733 | 7.5 | 45.4 | — | Prompt injection bypasses shell tool consent gate in Strands Agents Tools |
| CVE-2026-75130 | 6.4 | 39.9 | — | Context7 2.1.2 Prompt Injection via Custom AI Instructions |
| CVE-2026-70331 | 5.4 | 33.3 | — | Microsoft Edge for iOS Spoofing Vulnerability |
| CVE-2026-21832 | 4.3 | 20.1 | — | HCL AION is affected by multiple security vulnerabilities. |
Most-affected vendors
| Vendor | CVEs |
|---|---|
| amazon | 1 |
| aws | 1 |
| hcl software | 1 |
| microsoft | 1 |
| uptash | 1 |