boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-426

Weakness type CWE-426 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals
CVEs all-timeCVEs YTDKEV all-time
50440

Monthly trend

▂▁▁▁▁▁▁▁▁▁▂▁▁▁▂▁▁▁▁▁▂▁▁▁▁▁▁▁▁▂▂▁▂▃█▇▇

2025-09 0 · 2025-10 0 · 2025-11 0 · 2025-12 0 · 2026-01 1 · 2026-02 2 · 2026-03 0 · 2026-04 1 · 2026-05 3 · 2026-06 14 · 2026-07 11 · 2026-08 12

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2024-301007.865.3Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2025-277437.855.1Microsoft System Center Elevation of Privilege Vulnerability
CVE-2024-352609.854.4Microsoft Dataverse Remote Code Execution Vulnerability
CVE-2024-436167.852.9Microsoft Office Remote Code Execution Vulnerability
CVE-2023-368987.850.9Tablet Windows User Interface Application Core Remote Code Execution Vulnerability
CVE-2026-209437.048.5Microsoft Office Click-To-Run Remote Code Execution Vulnerability
CVE-2026-630938.744.0Cursor for Windows 3.2.16 RCE via Malicious git.exe in Workspace
CVE-2024-435767.840.4Microsoft Office Remote Code Execution Vulnerability
CVE-2026-444779.439.5CloudNativePG: Metrics exporter allows privilege escalation to PostgreSQL superuser and…
CVE-2026-428306.539.2Azure Monitor Agent Metrics Extension Elevation of Privilege Vulnerability
CVE-2026-748729.338.2openssl_encrypt before 1.4.0 Arbitrary Code Execution via Whirlpool
CVE-2026-457219.036.6Algernon: handler.lua discovery walks parent directories above the server root
CVE-2026-485657.836.2Windows Narrator Braille Elevation of Privilege Vulnerability
CVE-2026-215087.036.1Windows Storage Elevation of Privilege Vulnerability
CVE-2026-166748.834.8IBM i is Affected By Multiple Vulnerabilities in WebSphere Application Server Liberty
CVE-2026-491457.525.9App::Ack versions through 3.10.0 for Perl read arbitrary files via --files-from in a pr…
CVE-2026-570976.825.1Microsoft XML Security Feature Bypass Vulnerability
CVE-2026-114008.623.2Privilege Escalation in AWS Advanced JDBC Wrapper for Amazon Aurora PostgreSQL
CVE-2026-114018.623.2Privilege Escalation in AWS Advanced Go Wrapper for Amazon Aurora PostgreSQL
CVE-2026-538198.722.4OpenClaw < 2026.5.27 - Arbitrary Homebrew Executable Execution via Workspace .env Override

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
microsoft13
adobe5
openclaw5
aws2
ibm2
anysphere1
b&r industrial automation1
checkmal1
cloudnative-pg1
eai technologies1
jahlives1
kovidgoyal1
mervinpraison1
notepad-plus-plus1
open-telemetry1