Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-328 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 27 | 27 | 0 |
▁█▃▁
2026-05 1 · 2026-06 20 · 2026-07 6 · 2026-08 0
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-13510 | 2.9 | 12.3 | — | SimStudioAI sim Password Protection deployment.ts weak hash |
| CVE-2026-14738 | 2.9 | 12.3 | — | exo-explore exo Vision Feature Cache vision.py _image_cache_key weak hash |
| CVE-2026-41879 | 8.2 | 10.1 | — | Weak password hashing in R-SOFT DMS |
| CVE-2026-36182 | 9.8 | 9.0 | — | — |
| CVE-2026-13482 | 2.9 | 8.9 | — | skypilot-org skypilot User ID server.py username.encode weak hash |
| CVE-2026-48488 | 2.7 | 8.1 | — | phpMyFAQ has Weak Cryptography - SHA1 for Password Hashing |
| CVE-2026-11479 | 1.3 | 5.7 | — | yoanbernabeu grepai Qdrant Backend chunker.go weak hash |
| CVE-2026-14630 | 1.3 | 5.7 | — | ForceInjection AI-fundermentals Memory Recall smart_customer_service.py get_conversatio… |
| CVE-2026-14742 | 1.3 | 5.7 | — | langchain-ai langgraph Task Result Cache _cache.py _freeze weak hash |
| CVE-2026-15605 | 2.3 | 4.8 | — | wandb Artifact Integrity Validation hashutil.py ArtifactManifestEntry.download weak hash |
| CVE-2026-13455 | 4.3 | 2.0 | — | PostgreSQL Anonymizer: Unrestricted function can leak the secret salt |
| CVE-2026-10783 | 1.1 | 1.3 | — | gradio-app gradio Audio Cache Key save_audio_to_cache weak hash |
| CVE-2026-10803 | 1.1 | 1.1 | — | MLflow Dataset Digest Computation digest_utils.py mlflow.data.digest_utils weak hash |
| CVE-2026-54266 | 8.8 | 0.5 | — | Angular: Weak 32-Bit Cache Key Hashing in `HttpTransferCache` Leading to Cross-Request … |
| CVE-2026-10814 | 1.1 | 0.5 | — | milvus-io milvus Grantee ID Hash kv_catalog.go weak hash |
| CVE-2026-45413 | 6.9 | 0.3 | — | MaxKB: Unsalted MD5 Password Hashing |
| CVE-2026-10804 | 1.1 | 0.3 | — | Streamlit Palette hashing.py weak hash |
| CVE-2026-53692 | 5.9 | 0.3 | — | Weak hashing algorithm in Redeight CMS |
| CVE-2026-11481 | 1.1 | 0.3 | — | yoanbernabeu grepai Postgres Embedding Cache chunker.go PostgresStore.LookupByContentHa… |
| CVE-2026-10540 | 5.6 | 0.1 | — | Weak password hash protection in Control-M/Entreprise Manager |
| Vendor | CVEs |
|---|---|
| yoanbernabeu | 2 |
| 1panel-dev | 1 |
| angular | 1 |
| bmc | 1 |
| dalibo | 1 |
| exo-explore | 1 |
| forceinjection | 1 |
| gradio-app | 1 |
| langchain-ai | 1 |
| milvus-io | 1 |
| modelscope | 1 |
| onnx | 1 |
| paddlepaddle | 1 |
| r-soft serwis | 1 |
| redeight | 1 |