Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-405 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 7 | 7 | 0 |
▃█▁█
2026-05 1 · 2026-06 3 · 2026-07 0 · 2026-08 3
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-47774 | 7.5 | 59.0 | — | Envoy vulnerable to HTTP/2 memory exhaustion via cookie header size bypass and HPACK am… |
| CVE-2026-72914 | 7.5 | 37.9 | — | Mastodon: Exhausting data by an unauthenticated request to the admin retention API |
| CVE-2026-54224 | 7.1 | 19.7 | — | Denial of Service in UBB.threads |
| CVE-2025-32394 | 5.3 | 16.2 | — | AutoGPT: There is a DoS vulnerability in AITextSummarizerBlock |
| CVE-2026-8594 | 6.2 | 9.9 | — | Text::LineFold versions through 2019.001 for Perl duplicate the output based on the num… |
| CVE-2026-23930 | 5.3 | 6.9 | — | Frontend DoS via the popup.testtriggerexpr action |
| CVE-2026-23934 | 5.1 | 6.6 | — | Frontend DoS via the validate.api.exists action |
| Vendor | CVEs |
|---|---|
| zabbix | 2 |
| envoyproxy | 1 |
| mastodon | 1 |
| nezumi | 1 |
| significant-gravitas | 1 |
| ubb systems | 1 |