Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-311 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 9 | 9 | 1 |
▅▆█
2026-06 2 · 2026-07 3 · 2026-08 4
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-34486 | 7.5 | 99.6 | KEV | Apache Tomcat: Fix for CVE-2026-29146 allowed bypass of EncryptInterceptor |
| CVE-2025-59325 | 7.5 | 13.7 | — | — |
| CVE-2025-63579 | 7.5 | 10.1 | — | — |
| CVE-2026-53442 | 5.3 | 9.0 | — | — |
| CVE-2026-54784 | 7.4 | 7.3 | — | CoreWCF: SPNEGO SecurityContextToken proof key wrapped without confidentiality |
| CVE-2026-19891 | 6.3 | 2.5 | — | TRENDnet TEW-WLC100 IKE Phase 1 Aggressive Mode racoon.conf missing encryption |
| CVE-2026-20157 | 9.8 | 1.3 | — | Cisco RoomOS Security Hardening Release - Missing Encryption Vulnerabilities |
| CVE-2026-55568 | 5.9 | 1.3 | — | Guzzle: Silent HTTPS-Proxy Downgrade to Cleartext |
| CVE-2026-21079 | 7.0 | 0.0 | — | — |
| Vendor | CVEs |
|---|---|
| apache | 1 |
| cisco | 1 |
| corewcf | 1 |
| guzzle | 1 |
| jenkins project | 1 |
| samsung mobile | 1 |
| trendnet | 1 |