Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-524 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 24 | 24 | 0 |
▂█▇▃
2026-05 1 · 2026-06 11 · 2026-07 9 · 2026-08 3
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-13007 | 8.7 | 36.2 | — | Insecure Public Caching on REST API Endpoints in Tenable Identity Exposure |
| CVE-2026-59903 | 6.5 | 32.9 | — | Netty: Cache Poisoning and Information Disclosure via CORS Vary Header Overwrite |
| CVE-2026-48588 | 2.3 | 29.3 | — | Potential exposure of private data via cached Set-Cookie response |
| CVE-2026-9678 | 5.9 | 29.3 | — | undici vulnerable to cross-user information disclosure via shared cache whitespace bypass |
| CVE-2026-35193 | 2.3 | 29.1 | — | Potential exposure of private data via missing Vary: Authorization in UpdateCacheMiddle… |
| CVE-2026-64648 | 6.0 | 26.6 | — | Next.js: Response Body Cache Confusion for Requests Containing Bodies |
| CVE-2026-40012 | 5.3 | 24.7 | — | Information about ECS zero scoped answers might leak to clients that use a specific ECS |
| CVE-2026-41841 | 5.9 | 24.1 | — | Spring Framework Information Disclosure via Static Resource Cache in Spring MVC and Web… |
| CVE-2026-71316 | 7.5 | 22.4 | — | Nuxt runtime payload cache discloses another user's SSR data across users and to unauth… |
| CVE-2026-59213 | 5.0 | 22.3 | — | Open WebUI: Cross-user model-list exposure via static cache key in get_all_models (aioc… |
| CVE-2026-53943 | 9.6 | 20.3 | — | Ghost: Cache-poisoning XSS in Ghost frontend via x-ghost-preview header |
| CVE-2026-61836 | 8.6 | 19.7 | — | Directus: Authorization-dependent response served from unsegmented cache key |
| CVE-2026-50170 | 8.2 | 19.0 | — | Angular: Information Leak via Default Caching of Credentialed Requests in HttpTransferC… |
| CVE-2026-64792 | 7.5 | 16.6 | — | Joomla Extension - regularlabs.com - disclosure of restricted content via search index … |
| CVE-2026-48901 | 7.5 | 16.0 | — | Joomla! Core - [20260517] - Incorrect Cache Key Construction for InputFilter objects |
| CVE-2026-65755 | 7.5 | 16.0 | — | Joomla Extension - regularlabs.com - Date-sensitive query-cache leakage in Articles Any… |
| CVE-2026-14643 | 7.5 | 14.1 | — | undici vulnerable to cross-user information disclosure via whitespace around equals in … |
| CVE-2026-47225 | 6.0 | 13.5 | — | Improper Search Cache Isolation for Scoped Search API Keys in Typesense |
| CVE-2026-25703 | 7.3 | 13.3 | — | Potential information leakage from manager /network/graph API in NeuVector |
| CVE-2026-49858 | 5.9 | 11.3 | — | API Platform Core: Cross-user attribute leak in JSON:API and HAL item normalizers due t… |
| Vendor | CVEs |
|---|---|
| angular | 3 |
| djangoproject | 2 |
| regularlabs.com | 2 |
| undici | 2 |
| api-platform | 1 |
| directus | 1 |
| joomla! project | 1 |
| linux | 1 |
| netty | 1 |
| nuxt | 1 |
| open-webui | 1 |
| palo alto networks | 1 |
| powerdns | 1 |
| spring | 1 |
| suse | 1 |