Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-253
Weakness type CWE-253 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 7 | 5 | 0 |
Monthly trend
▅▁▁▁▁▁▁▁▁▁▁▁▁▅▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▅▁█▅▅▁▁
2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 1 · 2026-05 0 · 2026-06 2 · 2026-07 1 · 2026-08 1 · 2026-09 0 · 2026-10 0
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2024-43521 | 7.5 | 83.8 | — | Windows Hyper-V Denial of Service Vulnerability |
| CVE-2026-35091 | 8.2 | 64.3 | — | Corosync: corosync: denial of service and information disclosure via crafted udp packet |
| CVE-2023-4501 | 9.8 | 53.6 | — | Authentication bypass in OpenText (Micro Focus) Enterprise Server |
| CVE-2026-15686 | 7.2 | 52.4 | — | Adminer multi_query Incorrect Check of Function Return Value Remote Code Execution Vuln… |
| CVE-2026-59847 | 7.5 | 24.2 | — | Libssh: libssh: integrity downgrade via openssl aes-gcm tag verification |
| CVE-2026-5818 | 7.2 | 14.3 | — | MCU Firmware Update Authentication Bypass on Caliptra Core |
| CVE-2026-53090 | 7.8 | 2.9 | — | bpf: Fix ld_{abs,ind} failure path analysis in subprogs |