boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-451

Weakness type CWE-451 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
2192132

Monthly trend

▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁█▅▂▄▁

2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 2 · 2026-03 0 · 2026-04 2 · 2026-05 6 · 2026-06 94 · 2026-07 47 · 2026-08 19 · 2026-09 42 · 2026-10 1

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2024-381127.599.7KEVWindows MSHTML Platform Spoofing Vulnerability
CVE-2024-434618.899.0KEVWindows MSHTML Platform Spoofing Vulnerability
CVE-2026-215276.594.7—Microsoft Exchange Server Spoofing Vulnerability
CVE-2026-331184.351.7—Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2026-354294.351.7—Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability
CVE-2026-456504.351.7—Microsoft Bing Search Spoofing Vulnerability
CVE-2026-03916.548.9—Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability
CVE-2025-297964.746.2—Microsoft Edge for iOS Spoofing Vulnerability
CVE-2026-647356.543.8——
CVE-2024-380824.740.4—Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2024-380934.340.4—Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2026-404164.340.2—Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability
CVE-2026-647306.539.6——
CVE-2026-428916.538.6—Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability
CVE-2026-451506.334.8—Zen Browser - Missing Fullscreen Security Notification Allows Origin Spoofing
CVE-2026-538298.534.1—OpenClaw < 2026.5.18 - Command Truncation in Exec Approval Display
CVE-2026-331195.433.3—Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability
CVE-2026-91064.828.0—UI misrepresentation vulnerability in GitHub Enterprise Server allowed unauthorized org…
CVE-2026-454885.927.8—Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2026-184875.424.9—Epiphany: address bar / host spoofing via userinfo in ephy_uri_get_decoded_host()

Most-affected vendors