Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-369
Weakness type CWE-369 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 45 | 39 | 0 |
Monthly trend
▂▁▁▁▁▁▁▂▃▁▁▁▁▂▁▁▁▁▁▁▁▁▁▄▄█▇▆▂
2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 0 · 2026-05 5 · 2026-06 5 · 2026-07 11 · 2026-08 9 · 2026-09 8 · 2026-10 1
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2022-49330 | 5.5 | 56.1 | — | tcp: fix tcp_mtup_probe_success vs wrong snd_cwnd |
| CVE-2026-53503 | 7.5 | 53.4 | — | Thumbor convolution filter allows divide-by-zero in C extension leading to remote DoS |
| CVE-2022-49670 | 5.5 | 52.2 | — | linux/dim: Fix divide by 0 in RDMA DIM |
| CVE-2026-62431 | 7.5 | 47.3 | — | Viridian STIMER division by zero |
| CVE-2026-92881 | 5.3 | 46.5 | — | vgmstream AWB parser awb.c init_vgmstream_awb_memory divide by zero |
| CVE-2026-37232 | 8.6 | 45.8 | — | — |
| CVE-2026-91955 | 8.2 | 45.3 | — | FreeRDP before 3.31.0 Denial of Service via Desktop Dimensions |
| CVE-2026-63117 | 6.5 | 44.2 | — | FreeRDP: Denial of service through ADPCM frame size calculation |
| CVE-2026-14629 | 2.1 | 43.0 | — | RT-Thread Parameter lwp_syscall.c sys_ioctl divide by zero |
| CVE-2025-55642 | 6.5 | 40.7 | — | — |
| CVE-2026-67302 | 5.3 | 40.6 | — | FreeRDP rdpecam StartStreamsRequest divide-by-zero denial of service |
| CVE-2024-57932 | 5.5 | 37.0 | — | gve: guard XDP xmit NDO on existence of xdp queues |
| CVE-2026-47152 | 7.1 | 35.6 | — | Level Control Move divide-by-zero in EmberZNet v9.0.2 |
| CVE-2026-47153 | 7.1 | 35.6 | — | Level Control Step With On/Off divide-by-zero in EmberZNet v9.0.2 |
| CVE-2026-79513 | 6.5 | 28.8 | — | — |
| CVE-2026-38345 | 6.5 | 26.9 | — | — |
| CVE-2026-75466 | 6.5 | 26.9 | — | — |
| CVE-2026-6683 | 4.6 | 21.2 | — | FatFs Divide-by-Zero in exFAT Sync |
| CVE-2024-36968 | 6.5 | 19.9 | — | Bluetooth: L2CAP: Fix div-by-zero in l2cap_le_flowctl_init() |
| CVE-2026-93589 | 6.3 | 19.1 | — | ImageMagick before 7.1.2-31 Division by Zero in FLIF encoder |
Most-affected vendors
| Vendor | CVEs |
|---|---|
| linux | 12 |
| freerdp | 3 |
| silicon labs | 3 |
| rapid7 | 2 |
| zephyrproject | 2 |
| arkq | 1 |
| automationdirect | 1 |
| chan | 1 |
| ibm | 1 |
| imagemagick | 1 |
| nvidia | 1 |
| the hdf group | 1 |
| the tcpdump group | 1 |
| thumbor | 1 |
| xen | 1 |