Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-470 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 30 | 29 | 1 |
▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▅█▆
2025-09 0 · 2025-10 0 · 2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 0 · 2026-05 0 · 2026-06 7 · 2026-07 13 · 2026-08 9
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2021-21985 | 9.8 | 100.0 | KEV | VMware vCenter Server |
| CVE-2026-44416 | 9.8 | 64.6 | — | Apache Ranger: Remote Code Execution via Arbitrary Class Instantiation |
| CVE-2026-65608 | 8.7 | 55.3 | — | Grav before 2.0.9 Remote Code Execution via FlexDirectory |
| CVE-2026-46562 | 9.8 | 53.1 | — | Yamcs: Remote Code Execution via Mission Database algorithm override |
| CVE-2026-44795 | 8.8 | 43.3 | — | Spinnaker: Non-safe yaml deserialization allowing RCE when using specific types |
| CVE-2026-6020 | 7.2 | 43.0 | — | ShopLentor <= 3.3.7 - Authenticated (Administrator+) Arbitrary Function Execution via '… |
| CVE-2026-63317 | 5.6 | 41.5 | — | Apache OpenNLP: Arbitrary Class Instantiation in GeneratorFactory via Feature Descripto… |
| CVE-2026-13181 | 8.1 | 39.9 | — | RadAsyncUpload AsyncUploadTypeName Type Resolution Vulnerability in Telerik UI for ASP.… |
| CVE-2026-8400 | 9.8 | 39.7 | — | Multiple Vulnerabilities in IBM® Java SDK affect IBM WebSphere Application Server and W… |
| CVE-2022-4993 | 9.1 | 39.6 | — | HTML::FormHandler versions through 0.40068 for Perl allow attacker selected method disp… |
| CVE-2026-49287 | 7.4 | 38.1 | — | Statamic CMS vulnerable to unsafe method invocation via collection sorting allows data … |
| CVE-2026-13051 | 9.1 | 37.6 | — | Form::Processor::Field::HtmlArea versions from 0.06 through 1.162360 for Perl allow att… |
| CVE-2026-46718 | 6.5 | 36.5 | — | Apache Calcite: A user-controled model can load arbitrary classes, leading to code exec… |
| CVE-2026-40008 | 9.8 | 35.5 | — | Apache IoTDB: Arbitrary Class Instantiation via Pipe Transfer RPC |
| CVE-2026-53666 | 6.1 | 34.8 | — | React Router: Arbitrary Constructor Injection via deserializeErrors() in React Router S… |
| CVE-2026-13187 | 8.1 | 27.2 | — | DialogHandler Provider Type Tampering Vulnerability in Telerik UI for ASP.NET AJAX |
| CVE-2026-55153 | 7.1 | 25.7 | — | mchange-commons-java contains elements susceptible to abuse via JNDI injection and "des… |
| CVE-2026-58659 | 8.4 | 25.5 | — | PyTorch Lightning Arbitrary Code Execution via _instantiator Hyperparameter |
| CVE-2026-63337 | 7.5 | 24.5 | — | RabbitMQ Java client: Unvalidated Class.forName in JSON-RPC ProcedureDescription enable… |
| CVE-2026-17593 | 7.2 | 23.5 | — | Nexus Repository - Arbitrary Class Instantiation via Unsafe Realm Configuration |
| Vendor | CVEs |
|---|---|
| apache | 4 |
| ibm | 2 |
| messagepack-csharp | 2 |
| progress | 2 |
| statamic | 2 |
| devitemsllc | 1 |
| getgrav | 1 |
| getkirby | 1 |
| jenkins project | 1 |
| kludex | 1 |
| lightning-ai | 1 |
| masci | 1 |
| nvidia | 1 |
| rabbitmq | 1 |
| remix-run | 1 |