boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-310

Weakness type CWE-310 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
15150

Monthly trend

▂▁▂▁▃█▄▁

2026-03 1 · 2026-04 0 · 2026-05 1 · 2026-06 0 · 2026-07 2 · 2026-08 8 · 2026-09 3 · 2026-10 0

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2026-825552.950.0—TOTOLINK N600R Authentication cstecgi.cgi loginAuth random values
CVE-2026-198962.939.9—mangroup dtale Flask Session Cookie app.py build_secret_key random values
CVE-2026-176169.831.4—Security vulnerabilities have been found in IBM Verify Identity Access and IBM Security…
CVE-2026-771516.328.3—lin-snow Ech0 crypto.go MD5Encrypt risky encryption
CVE-2026-862805.526.2—SourceCodester Syllabus-Aligned Learning Management & Examination System cict_portal.sq…
CVE-2026-818362.918.8—RooCodeInc Roo-Code OAuth Callback oauth.ts cleartext transmission
CVE-2026-826992.014.9—sambitraj Student Management System Password aca.sql cleartext storage
CVE-2026-965502.910.6—sfturing hosp_order MailUtil.java getProperties cleartext transmission
CVE-2026-26712.39.2—Mendi Neurofeedback Headset Bluetooth Low Energy cleartext transmission
CVE-2026-490007.07.5—Cryptography Implementation Flaw vulnerability in ZTE ZXUniPOS NDS-LTE product
CVE-2026-198916.36.9—TRENDnet TEW-WLC100 IKE Phase 1 Aggressive Mode racoon.conf missing encryption
CVE-2026-147021.13.1—zcaceres markdownify-mcp webpage-to-markdown Markdownify.ts saveToTempFile random values
CVE-2026-162134.81.1—Fantomas42 django-blog-zinnia Protected Entry Password entry_protection.py cleartext st…
CVE-2026-185910.91.1—Meesho Online Shopping App com.meesho.supply cleartext storage
CVE-2026-965491.90.2—sfturing hosp_order CommonUserServiceImpl.java cleartext storage

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
sfturing2
fantomas421
ibm1
lin-snow1
mangroup1
meesho1
mendi1
roocodeinc1
sambitraj1
sourcecodester1
totolink1
trendnet1
zcaceres1
zte1