boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-253

Weakness type CWE-253 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
750

Monthly trend

▅▁▁▁▁▁▁▁▁▁▁▁▁▅▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▅▁█▅▅▁▁

2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 1 · 2026-05 0 · 2026-06 2 · 2026-07 1 · 2026-08 1 · 2026-09 0 · 2026-10 0

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2024-435217.583.8—Windows Hyper-V Denial of Service Vulnerability
CVE-2026-350918.264.3—Corosync: corosync: denial of service and information disclosure via crafted udp packet
CVE-2023-45019.853.6—Authentication bypass in OpenText (Micro Focus) Enterprise Server
CVE-2026-156867.252.4—Adminer multi_query Incorrect Check of Function Return Value Remote Code Execution Vuln…
CVE-2026-598477.524.2—Libssh: libssh: integrity downgrade via openssl aes-gcm tag verification
CVE-2026-58187.214.3—MCU Firmware Update Authentication Bypass on Caliptra Core
CVE-2026-530907.82.9—bpf: Fix ld_{abs,ind} failure path analysis in subprogs

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
red hat2
adminer1
caliptra1
linux1
microsoft1
opentext1