Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-197 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 29 | 24 | 0 |
▃▁▁▁▁▁▁▂▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▄▄█
2025-09 0 · 2025-10 0 · 2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 0 · 2026-05 2 · 2026-06 5 · 2026-07 5 · 2026-08 12
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2024-37337 | 4.3 | 74.8 | — | Microsoft SQL Server Native Scoring Information Disclosure Vulnerability |
| CVE-2024-21352 | 8.8 | 74.3 | — | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-21391 | 8.8 | 74.3 | — | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-43519 | 8.8 | 70.5 | — | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2026-42944 | 8.7 | 55.1 | — | Heap overflow with multiple NSID, COOKIE, PADDING EDNS options |
| CVE-2024-21377 | 5.5 | 48.4 | — | Windows DNS Information Disclosure Vulnerability |
| CVE-2026-6679 | 8.8 | 45.0 | — | DTLS 1.3 ACK serialization heap buffer overflow via integer truncation |
| CVE-2026-40380 | 6.2 | 38.4 | — | Windows Volume Manager Extension Driver Remote Code Execution Vulnerability |
| CVE-2026-55142 | 5.5 | 35.2 | — | Microsoft Word Information Disclosure Vulnerability |
| CVE-2026-63525 | 7.8 | 31.0 | — | Microsoft Office Word Remote Code Execution Vulnerability |
| CVE-2026-44823 | 7.8 | 30.4 | — | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-62698 | 7.8 | 29.3 | — | Microsoft Digest Authentication Elevation of Privilege Vulnerability |
| CVE-2026-68804 | 7.8 | 28.4 | — | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-50332 | 7.8 | 27.9 | — | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-40404 | 7.8 | 26.9 | — | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerab… |
| CVE-2026-62769 | 6.7 | 25.5 | — | Windows DNS Elevation of Privilege Vulnerability |
| CVE-2026-62881 | 6.7 | 25.5 | — | Windows DNS Elevation of Privilege Vulnerability |
| CVE-2026-73523 | 8.7 | 25.3 | — | COVESA Open1722 0.9.2 Stack Memory Disclosure via acf-can-listener.c Integer Truncation |
| CVE-2026-50357 | 7.8 | 23.8 | — | Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability |
| CVE-2026-56650 | 7.8 | 23.8 | — | Windows Network File System Elevation of Privilege Vulnerability |
| Vendor | CVEs |
|---|---|
| microsoft | 23 |
| capstone-engine | 1 |
| covesa | 1 |
| nlnet labs | 1 |
| nnn | 1 |
| the document foundation | 1 |
| wolfssl | 1 |