boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Thursday, October 8, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-523

Weakness type CWE-523 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
760

Monthly trend

▅▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▅██▁▅▁

2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 0 · 2026-05 1 · 2026-06 2 · 2026-07 2 · 2026-08 0 · 2026-09 1 · 2026-10 0

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2024-11026.554.8—Jberet: jberet-core logging database credentials
CVE-2026-86739.124.7—Password re-initialization mechanism sends passwords in plain text
CVE-2026-547847.417.9—CoreWCF: SPNEGO SecurityContextToken proof key wrapped without confidentiality
CVE-2026-86682.317.7—Hardcoded credentials in embedded content
CVE-2026-565873.714.3—HCL IEM was affected with Strict transport security not enforced
CVE-2026-366105.97.9——
CVE-2026-176205.32.3—IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
corewcf1
hclsoftware1
ibm1
progress chef1
red hat1
syslink software1