Reference page — cumulative record through Thursday, October 8, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-393
Weakness type CWE-393 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 9 | 8 | 0 |
Monthly trend
▃▁▁▁▁▁▁▁▁▁▅▅▁▁▁█
2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 0 · 2026-05 2 · 2026-06 2 · 2026-07 0 · 2026-08 0 · 2026-09 0 · 2026-10 4
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2025-5987 | 8.1 | 75.2 | — | Libssh: invalid return code for chacha20 poly1305 with openssl backend |
| CVE-2026-55958 | 8.3 | 36.5 | — | Renesas TSIP TLS 1.3 transcript buffer out-of-bounds write in tsip_StoreMessage |
| CVE-2026-85483 | 6.3 | 34.8 | — | Apache Thrift: c_glib TZlibTransport reports a full read after a premature stream end |
| CVE-2026-92834 | 6.3 | 34.8 | — | Apache Thrift: C++ WebSocket server transport does not read a full request length |
| CVE-2026-9058 | 9.3 | 29.5 | — | Improper Certificate Verification in Szafir SDK |
| CVE-2026-42246 | 7.6 | 22.1 | — | net-imap vulnerable to STARTTLS stripping via invalid response timing |
| CVE-2026-92821 | 6.8 | 21.9 | — | Sssd: sssd: access control bypass via premature ldap access rule evaluation |
| CVE-2026-85087 | 6.9 | 10.9 | — | Apache Thrift: Python ≥3.12 host-name check silently becomes a no-op |
| CVE-2026-53092 | 7.8 | 2.3 | — | bpf: Fix linked reg delta tracking when src_reg == dst_reg |