boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-532

Weakness type CWE-532 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals
CVEs all-timeCVEs YTDKEV all-time
90840

Monthly trend

▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▂▅▇██

2025-09 0 · 2025-10 1 · 2025-11 0 · 2025-12 1 · 2026-01 1 · 2026-02 1 · 2026-03 2 · 2026-04 4 · 2026-05 14 · 2026-06 19 · 2026-07 22 · 2026-08 21

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2025-250026.861.0Azure Local Cluster Information Disclosure Vulnerability
CVE-2026-542365.354.5vLLM: incomplete CVE-2026-22778 fix leaks PIL repr addresses via Anthropic router
CVE-2026-208186.251.0Windows Kernel Information Disclosure Vulnerability
CVE-2026-659456.546.5Apache Ranger: Logs contain replayable JWT bearer tokens
CVE-2026-120537.545.3Insertion of Sensitive Information into Log File in GitLab
CVE-2026-212225.544.7Windows Kernel Information Disclosure Vulnerability
CVE-2024-312457.542.0WordPress ConvertKit plugin <= 2.4.5 - Email Disclosure in Log File vulnerability
CVE-2026-4920010.041.9Acer Wave 7 router: Broken Access Control
CVE-2024-96215.341.9Io.quarkiverse.cxf:quarkus-cxf: quarkus cxf may log user password and secret to applica…
CVE-2024-312497.541.3WordPress Subscribe To Comments Reloaded plugin <= 220725 - Sensitive Data Exposure vul…
CVE-2026-411846.041.0ServiceAccount token disclosure via install-cni container logs
CVE-2026-648005.740.2
CVE-2026-202396.539.8Sensitive Information Disclosure through Log Files in Splunk Enterprise
CVE-2026-322185.536.5Windows Kernel Information Disclosure Vulnerability
CVE-2026-322155.535.3Windows Kernel Information Disclosure Vulnerability
CVE-2026-322175.535.2Windows Kernel Information Disclosure Vulnerability
CVE-2026-129477.532.8IBM App Connect Enterprise is vulnerable to Confidentiality disclosure on Discovery Con…
CVE-2026-193635.532.4lmammino oidc-authorizer Lambda Authorizer handler.rs log file
CVE-2026-655895.130.4n8n before 1.123.64 Credential Exposure via LLM Node Execution Data
CVE-2020-368768.729.8ReQuest Serious Play F3 Media Server <= 7.0.3 Debug Log Disclosure2020

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
ibm9
microsoft7
red hat7
dell4
hclsoftware4
mongodb4
apple3
tigera3
acer2
apache2
gitlab2
jetbrains2
open-telemetry2
renovatebot2
admidio1