boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-400

Weakness type CWE-400 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
9418838

Monthly trend

▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▃▁▂▁▁▃▄▃▂▄▃▄▂▂█▁▂▁

2024-02 3 · 2024-03 2 · 2024-04 1 · 2024-05 3 · 2024-06 2 · 2024-07 3 · 2024-08 1 · 2024-09 1 · 2024-10 8 · 2024-11 0 · 2024-12 1 · 2025-01 0

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2021-4422810.0100.0KEVApache Log4j2 JNDI features do not protect against attacker controlled LDAP and other J…
CVE-2023-444877.5100.0KEVIETF HTTP/2
CVE-2023-381807.596.5KEV.NET and Visual Studio Denial of Service Vulnerability
CVE-2004-14645.991.7KEVCisco IOS
CVE-2020-35668.689.4KEVCisco IOS XR Software DVMRP Memory Exhaustion Vulnerability
CVE-2020-35698.688.2KEVCisco IOS XR Software DVMRP Memory Exhaustion Vulnerabilities
CVE-2026-283187.579.4KEVSolarWinds Serv-U Unauthenticated Denial of Service Vulnerability
CVE-2026-454987.568.7KEVMicrosoft Defender Denial of Service Vulnerability
CVE-2024-16357.591.3—Undertow: out-of-memory error after several closed connections with wildfly-http-client…
CVE-2023-56857.588.7—Xnio: stackoverflowexception when the chain of notifier states becomes problematically big
CVE-2025-266737.585.0—Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
CVE-2023-381787.584.8—.NET Core and Visual Studio Denial of Service Vulnerability
CVE-2024-213427.584.4—Windows DNS Client Denial of Service Vulnerability
CVE-2025-274697.584.0—Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
CVE-2026-331167.583.8—.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
CVE-2026-455917.583.8—ASP.NET Core Denial of Service Vulnerability
CVE-2024-213867.583.5—.NET Denial of Service Vulnerability
CVE-2024-435417.582.9—Microsoft Simple Certificate Enrollment Protocol Denial of Service Vulnerability
CVE-2024-435067.582.9—BranchCache Denial of Service Vulnerability
CVE-2024-435757.582.8—Windows Hyper-V Denial of Service Vulnerability

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
oracle126
microsoft34
ibm31
apache29
adobe22
netty20
elastic19
red hat17
hewlett packard enterprise (hpe)16
apple15
py-pdf14
vllm-project13
grafana12
rabbitmq12
spring12