boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-250

Weakness type CWE-250 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
79682

Monthly trend

▁▁▁▁▁▁▁▁▁▁▁▁▂▁▁▁▁▁▁▁▁▁▁▁▂▁▁▂▁▁▁▁▂▆▅▆█▁

2025-11 0 · 2025-12 2 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 1 · 2026-05 3 · 2026-06 15 · 2026-07 12 · 2026-08 15 · 2026-09 21 · 2026-10 1

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2024-388137.597.0KEVPrivilege escalation vulnerability
CVE-2025-406026.685.7KEVSonicWall SMA1000 appliance
CVE-2024-73879.182.7—Openshift/builder: path traversal allows command injection in privileged buildcontainer…
CVE-2024-435837.870.3—Winlogon Elevation of Privilege Vulnerability
CVE-2023-52078.268.1—Execution with Unnecessary Privileges in GitLab
CVE-2026-545019.467.6—Browsertrix: Arbitrary Command Injection due to Improper Command Sanitization in Git UR…
CVE-2026-7752110.063.0—MaxKB: Prompt-injectable agent can lead to command execution
CVE-2026-694096.561.4—Microsoft Office SharePoint Information Disclosure Vulnerability
CVE-2026-428339.159.3—Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability
CVE-2026-485848.858.7—Microsoft Azure Synapse Elevation of Privilege Vulnerability
CVE-2026-591338.858.7—Microsoft High Performance Computing (HPC) Pack Elevation of Privilege Vulnerability
CVE-2026-694648.858.7—Microsoft Office SharePoint Elevation of Privilege Vulnerability
CVE-2026-847878.156.6—Privilege Escalation vulnerability
CVE-2026-725089.955.4—Multicloud-operators-subscription: multicloud-operators-subscription: hub and spoke ser…
CVE-2026-189828.854.8—Odh-training-operator-rhel9: rhoai fork aggregates training job create onto native edit…
CVE-2026-171108.853.2—IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-186698.853.2—IBM i is Affected By A Privilege Escalation Vulnerability []
CVE-2026-186088.751.5—Data-science-pipelines-operator: dspo: operator clusterrole grants pods/exec:*, kubeflo…
CVE-2026-925748.849.6—Cri-o: cri-o checkpoint restore bypasses destination security context
CVE-2026-189498.846.9—Odh-dashboard: odh-dashboard: clusterrole grants cluster-wide crud on secrets and rbac …

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
red hat13
microsoft6
ibm5
xen5
fission4
google4
canonical2
dell2
0x5t4l1n1
1panel-dev1
acronis1
analog way1
binsoft1
broadcom1
cloudnative-pg1