Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-213
Weakness type CWE-213 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 4 | 4 | 0 |
Monthly trend
▅▁▁▁█▅▁▁
2026-03 1 · 2026-04 0 · 2026-05 0 · 2026-06 0 · 2026-07 2 · 2026-08 1 · 2026-09 0 · 2026-10 0
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-33216 | 7.5 | 48.4 | — | NATS has MQTT plaintext password disclosure |
| CVE-2026-55425 | 5.0 | 33.2 | — | Graylog: System Catalog titles endpoint can be used to retrieve values of protected dat… |
| CVE-2026-6280 | 6.5 | 29.4 | — | Improper Access Control in Nomysoft Informatics' Nomysem |
| CVE-2026-56538 | 3.5 | 17.6 | — | HCL Connections is vulnerable to information disclosure |
Most-affected vendors
| Vendor | CVEs |
|---|---|
| graylog2 | 1 |
| hclsoftware | 1 |
| nats-io | 1 |
| nomysoft informatics education and consulting | 1 |