boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-311

Weakness type CWE-311 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals
CVEs all-timeCVEs YTDKEV all-time
991

Monthly trend

▅▆█

2026-06 2 · 2026-07 3 · 2026-08 4

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2026-344867.599.6KEVApache Tomcat: Fix for CVE-2026-29146 allowed bypass of EncryptInterceptor
CVE-2025-593257.513.7
CVE-2025-635797.510.1
CVE-2026-534425.39.0
CVE-2026-547847.47.3CoreWCF: SPNEGO SecurityContextToken proof key wrapped without confidentiality
CVE-2026-198916.32.5TRENDnet TEW-WLC100 IKE Phase 1 Aggressive Mode racoon.conf missing encryption
CVE-2026-201579.81.3Cisco RoomOS Security Hardening Release - Missing Encryption Vulnerabilities
CVE-2026-555685.91.3Guzzle: Silent HTTPS-Proxy Downgrade to Cleartext
CVE-2026-210797.00.0

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
apache1
cisco1
corewcf1
guzzle1
jenkins project1
samsung mobile1
trendnet1