boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-353

Weakness type CWE-353 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
12120

Monthly trend

▂▄▂▅█▁

2026-05 1 · 2026-06 2 · 2026-07 1 · 2026-08 3 · 2026-09 5 · 2026-10 0

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2026-582246.523.6—Samba: ctdb fails to do integrity checking of received packets
CVE-2026-768537.215.6—Netcore NR268 1.7.121109 Security Check Bypass in parame_put_file.cgi
CVE-2026-494507.17.0—Joplin desktop Windows auto-updater accepts signed installer from any publisher because…
CVE-2026-489954.85.9—pnpm: Tarball hash of GitHub git dependencies is not stored in lockfile
CVE-2026-845335.35.1——
CVE-2026-891795.34.5—Howyar|WeenyGenius - Missing Support for Integrity Check
CVE-2026-185367.54.0—Data::Entropy versions before 0.010 for Perl read remote entropy sources over plain HTTP
CVE-2026-127055.93.7—Integrity mechanism of KNX-device FW-files can be bypassed in ABB Update Tool
CVE-2026-457876.03.4—electerm's encrypt method not safe enough
CVE-2026-175838.32.9—Thermo Fisher Applied Biosystems Genetic Analyzers Missing Support for Integrity Check
CVE-2026-810496.71.6——
CVE-2026-75748.71.4—Anthropic Claude Desktop Cowork VM Image Contents Not Validated Before Use

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
abb1
anthropic1
apple1
dell1
electerm1
howyar1
laurent221
netcore1
pnpm1
red hat1
rrwo1
thermo fisher1