Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-313
Weakness type CWE-313 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 5 | 5 | 0 |
Monthly trend
█▅▅▅▁
2026-06 2 · 2026-07 1 · 2026-08 1 · 2026-09 1 · 2026-10 0
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-90842 | 2.9 | 21.3 | — | PHPGurukul Blood Donor Management System Login_Model.php cleartext storage in file |
| CVE-2026-52783 | 8.2 | 8.8 | — | OpenProject: Information Disclosure (cleartext storage of data) on localhost through me… |
| CVE-2026-8804 | 6.7 | 1.1 | — | Cleartext Storage of Sensitive Information for Puppet Resource API |
| CVE-2026-14663 | 6.5 | 0.7 | — | PostgreSQL pgcrypto, for OpenSSL-disabled ciphers, silently encrypts to and decrypts fr… |
| CVE-2026-24349 | 8.2 | 0.0 | — | — |
Most-affected vendors
| Vendor | CVEs |
|---|---|
| opf | 1 |
| perforce | 1 |
| phpgurukul | 1 |
| siemens | 1 |