Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-310
Weakness type CWE-310 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 15 | 15 | 0 |
Monthly trend
▂▁▂▁▃█▄▁
2026-03 1 · 2026-04 0 · 2026-05 1 · 2026-06 0 · 2026-07 2 · 2026-08 8 · 2026-09 3 · 2026-10 0
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-82555 | 2.9 | 50.0 | — | TOTOLINK N600R Authentication cstecgi.cgi loginAuth random values |
| CVE-2026-19896 | 2.9 | 39.9 | — | mangroup dtale Flask Session Cookie app.py build_secret_key random values |
| CVE-2026-17616 | 9.8 | 31.4 | — | Security vulnerabilities have been found in IBM Verify Identity Access and IBM Security… |
| CVE-2026-77151 | 6.3 | 28.3 | — | lin-snow Ech0 crypto.go MD5Encrypt risky encryption |
| CVE-2026-86280 | 5.5 | 26.2 | — | SourceCodester Syllabus-Aligned Learning Management & Examination System cict_portal.sq… |
| CVE-2026-81836 | 2.9 | 18.8 | — | RooCodeInc Roo-Code OAuth Callback oauth.ts cleartext transmission |
| CVE-2026-82699 | 2.0 | 14.9 | — | sambitraj Student Management System Password aca.sql cleartext storage |
| CVE-2026-96550 | 2.9 | 10.6 | — | sfturing hosp_order MailUtil.java getProperties cleartext transmission |
| CVE-2026-2671 | 2.3 | 9.2 | — | Mendi Neurofeedback Headset Bluetooth Low Energy cleartext transmission |
| CVE-2026-49000 | 7.0 | 7.5 | — | Cryptography Implementation Flaw vulnerability in ZTE ZXUniPOS NDS-LTE product |
| CVE-2026-19891 | 6.3 | 6.9 | — | TRENDnet TEW-WLC100 IKE Phase 1 Aggressive Mode racoon.conf missing encryption |
| CVE-2026-14702 | 1.1 | 3.1 | — | zcaceres markdownify-mcp webpage-to-markdown Markdownify.ts saveToTempFile random values |
| CVE-2026-16213 | 4.8 | 1.1 | — | Fantomas42 django-blog-zinnia Protected Entry Password entry_protection.py cleartext st… |
| CVE-2026-18591 | 0.9 | 1.1 | — | Meesho Online Shopping App com.meesho.supply cleartext storage |
| CVE-2026-96549 | 1.9 | 0.2 | — | sfturing hosp_order CommonUserServiceImpl.java cleartext storage |
Most-affected vendors
| Vendor | CVEs |
|---|---|
| sfturing | 2 |
| fantomas42 | 1 |
| ibm | 1 |
| lin-snow | 1 |
| mangroup | 1 |
| meesho | 1 |
| mendi | 1 |
| roocodeinc | 1 |
| sambitraj | 1 |
| sourcecodester | 1 |
| totolink | 1 |
| trendnet | 1 |
| zcaceres | 1 |
| zte | 1 |