Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-252 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 12 | 7 | 0 |
▅▁█▁▁▁▁▁▁▅▁▁▁▁▁▁▁▅▁▁▁▁▁▁▅███
2025-09 0 · 2025-10 1 · 2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 0 · 2026-05 1 · 2026-06 2 · 2026-07 2 · 2026-08 2
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-40092 | 7.5 | 47.3 | — | nimiq-keys: Unchecked Ed25519 signature length in TaggedPublicKey::verify causes remote… |
| CVE-2023-52687 | 5.5 | 46.0 | — | crypto: safexcel - Add error handling for dma_map_sg() calls |
| CVE-2025-58903 | 2.5 | 45.0 | — | — |
| CVE-2026-11972 | 8.2 | 37.2 | — | tarfile opened in streaming mode mishandles EOF |
| CVE-2026-26080 | 3.7 | 34.9 | — | — |
| CVE-2026-62909 | 7.8 | 21.4 | — | .NET Elevation of Privilege Vulnerability |
| CVE-2024-45775 | 5.2 | 20.5 | — | Grub2: commands/extcmd: missing check for failed allocation |
| CVE-2026-47245 | 4.3 | 19.1 | — | MyBB: Buddy list corruption |
| CVE-2026-61857 | 6.3 | 18.6 | — | ImageMagick before 7.1.2-26 Heap Use-After-Free via XMP |
| CVE-2024-42068 | 5.5 | 15.0 | — | bpf: Take return from set_memory_ro() into account with bpf_prog_lock_ro() |
| CVE-2024-42067 | 5.5 | 14.5 | — | bpf: Take return from set_memory_rox() into account with bpf_jit_binary_lock_ro() |
| CVE-2026-46521 | 5.5 | 1.5 | — | ImageMagick: Heap Buffer Over-Write in MIFF encoder when using LZMA compression |
| Vendor | CVEs |
|---|---|
| linux | 3 |
| imagemagick | 2 |
| fortinet | 1 |
| haproxy | 1 |
| microsoft | 1 |
| mybb | 1 |
| nimiq | 1 |
| python software foundation | 1 |
| red hat | 1 |