Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-353
Weakness type CWE-353 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 12 | 12 | 0 |
Monthly trend
▂▄▂▅█▁
2026-05 1 · 2026-06 2 · 2026-07 1 · 2026-08 3 · 2026-09 5 · 2026-10 0
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-58224 | 6.5 | 23.6 | — | Samba: ctdb fails to do integrity checking of received packets |
| CVE-2026-76853 | 7.2 | 15.6 | — | Netcore NR268 1.7.121109 Security Check Bypass in parame_put_file.cgi |
| CVE-2026-49450 | 7.1 | 7.0 | — | Joplin desktop Windows auto-updater accepts signed installer from any publisher because… |
| CVE-2026-48995 | 4.8 | 5.9 | — | pnpm: Tarball hash of GitHub git dependencies is not stored in lockfile |
| CVE-2026-84533 | 5.3 | 5.1 | — | — |
| CVE-2026-89179 | 5.3 | 4.5 | — | Howyar|WeenyGenius - Missing Support for Integrity Check |
| CVE-2026-18536 | 7.5 | 4.0 | — | Data::Entropy versions before 0.010 for Perl read remote entropy sources over plain HTTP |
| CVE-2026-12705 | 5.9 | 3.7 | — | Integrity mechanism of KNX-device FW-files can be bypassed in ABB Update Tool |
| CVE-2026-45787 | 6.0 | 3.4 | — | electerm's encrypt method not safe enough |
| CVE-2026-17583 | 8.3 | 2.9 | — | Thermo Fisher Applied Biosystems Genetic Analyzers Missing Support for Integrity Check |
| CVE-2026-81049 | 6.7 | 1.6 | — | — |
| CVE-2026-7574 | 8.7 | 1.4 | — | Anthropic Claude Desktop Cowork VM Image Contents Not Validated Before Use |