boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-367

Weakness type CWE-367 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
2622426

Monthly trend

▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▃▅▅█▇▁

2025-11 0 · 2025-12 0 · 2026-01 4 · 2026-02 4 · 2026-03 0 · 2026-04 4 · 2026-05 16 · 2026-06 37 · 2026-07 38 · 2026-08 72 · 2026-09 65 · 2026-10 2

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2024-300887.099.3KEVWindows Kernel Elevation of Privilege Vulnerability
CVE-2023-353118.896.7KEVMicrosoft Outlook Security Feature Bypass Vulnerability
CVE-2015-32467.494.8KEV—
CVE-2025-222249.374.4KEVVMware ESXi and Workstation
CVE-2025-383527.869.2KEVposix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del()
CVE-2022-486187.039.8KEVApple Multiple Products
CVE-2024-213717.095.7—Windows Kernel Elevation of Privilege Vulnerability
CVE-2024-300847.093.0—Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
CVE-2026-208167.084.0—Windows Installer Elevation of Privilege Vulnerability
CVE-2026-538228.779.6—OpenClaw < 2026.5.18 - Command Argument Modification via Shell Wrapper Between Approval…
CVE-2026-215238.055.9—GitHub Copilot and Visual Studio Code Remote Code Execution Vulnerability
CVE-2026-538067.747.7—OpenClaw < 2026.5.12 - Shell Option Parsing Bypass in Exec Revalidation
CVE-2026-783199.347.2—TOCTOU Vulnerability in file exchange
CVE-2026-663145.345.5—Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
CVE-2026-827619.144.6—Magic link single-use tokens replayable via TOCTOU race in AshAuthentication
CVE-2024-300997.043.7—Windows Kernel Elevation of Privilege Vulnerability
CVE-2026-191187.743.4—Race condition vulnerability was identified in GitHub Enterprise Server that allowed re…
CVE-2026-566487.541.3—Windows NFS Server Elevation of Privilege Vulnerability
CVE-2026-698047.541.3—Microsoft Office SharePoint Remote Code Execution Vulnerability
CVE-2026-436329.239.0—llama.cpp b7492–b9060 Use-After-Free in Tokenization Endpoints

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
microsoft35
google29
linux15
ibm10
openclaw9
red hat8
rsyncproject7
apache5
dell4
nvidia4
qualcomm4
mediatek3
mervinpraison3
midnightbsd3
trend micro3