Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-367 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 157 | 141 | 2 |
▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▁▁▁▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▂▁▂▄▇▇█
2025-09 1 · 2025-10 0 · 2025-11 0 · 2025-12 0 · 2026-01 3 · 2026-02 3 · 2026-03 0 · 2026-04 3 · 2026-05 15 · 2026-06 37 · 2026-07 38 · 2026-08 42
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2024-30088 | 7.0 | 99.3 | KEV | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2025-38352 | 7.8 | 67.7 | KEV | posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del() |
| CVE-2024-21371 | 7.0 | 95.5 | — | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2024-30084 | 7.0 | 92.6 | — | Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
| CVE-2026-20816 | 7.0 | 83.3 | — | Windows Installer Elevation of Privilege Vulnerability |
| CVE-2026-5947 | 5.9 | 70.0 | — | SIG(0) validation during query flood may lead to undefined behavior |
| CVE-2026-32093 | 7.0 | 63.5 | — | Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability |
| CVE-2026-53822 | 8.7 | 59.5 | — | OpenClaw < 2026.5.18 - Command Argument Modification via Shell Wrapper Between Approval… |
| CVE-2026-21523 | 8.0 | 53.5 | — | GitHub Copilot and Visual Studio Code Remote Code Execution Vulnerability |
| CVE-2026-66314 | 5.3 | 44.9 | — | Microsoft Edge (Chromium-based) Information Disclosure Vulnerability |
| CVE-2024-30099 | 7.0 | 43.1 | — | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-56648 | 7.5 | 39.2 | — | Windows NFS Server Elevation of Privilege Vulnerability |
| CVE-2026-64091 | 9.8 | 35.7 | — | batman-adv: tt: fix TOCTOU race for reported vlans |
| CVE-2024-21362 | 5.5 | 35.5 | — | Windows Kernel Security Feature Bypass Vulnerability |
| CVE-2026-53806 | 7.7 | 35.1 | — | OpenClaw < 2026.5.12 - Shell Option Parsing Bypass in Exec Revalidation |
| CVE-2026-55950 | 8.7 | 31.2 | — | DTLS listener crash via race condition in dtls_packet_demux causes denial of service fo… |
| CVE-2026-20809 | 7.8 | 31.1 | — | Windows Kernel Memory Elevation of Privilege Vulnerability |
| CVE-2024-43511 | 7.0 | 31.1 | — | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-45804 | 7.5 | 30.9 | — | Diffusers: TOCTOU Trust Remote Code Bypass |
| CVE-2024-35265 | 7.0 | 29.8 | — | Windows Perception Service Elevation of Privilege Vulnerability |
| Vendor | CVEs |
|---|---|
| microsoft | 27 |
| linux | 15 |
| rsyncproject | 7 |
| openclaw | 6 |
| red hat | 5 |
| ibm | 3 |
| mediatek | 3 |
| nvidia | 3 |
| qualcomm | 3 |
| trend micro | 3 |
| apache | 2 |
| axis communications ab | 2 |
| better-auth | 2 |
| budibase | 2 |
| dell | 2 |