boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-521

Weakness type CWE-521 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
1091

Monthly trend

▅▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁███▅█▁

2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 0 · 2026-05 2 · 2026-06 2 · 2026-07 2 · 2026-08 1 · 2026-09 2 · 2026-10 0

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2019-189887.091.5KEVTeamViewer Desktop
CVE-2026-852169.557.4—MISP LDAP and LinOTP Authentication Bypass via Empty or Invalid Credentials
CVE-2026-737789.841.0—Credential Manager Vulnerability Allows Unauthorized Administrative Access
CVE-2026-350976.934.3—Weak Password Requirements in KTM System e-BOK
CVE-2024-406849.827.4—IBM Operations Analytics - Log Analysis is affected by Weak Password Policy and Inadequ…
CVE-2026-565776.518.8—HCL MyCloud affected by Weak Password Policy
CVE-2026-93941.318.3—Besen BS20 EV Charging Station Bluetooth Low Energy weak password
CVE-2026-114931.311.9—Tenda AC15 Samba smb.conf weak password
CVE-2026-192938.88.9—SMP security request
CVE-2026-125048.47.5—Loytec LINX firmware: Improper Authentication in PAM configuration

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
besen1
hclsoftware1
hewlett packard enterprise (hpe)1
ibm1
ktm system1
loytec1
misp1
silabs.com1
tenda1