boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-59

Weakness type CWE-59 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals
CVEs all-timeCVEs YTDKEV all-time
2271909

Monthly trend

▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▃▅█▆

2025-09 0 · 2025-10 0 · 2025-11 0 · 2025-12 0 · 2026-01 2 · 2026-02 1 · 2026-03 1 · 2026-04 2 · 2026-05 19 · 2026-06 42 · 2026-07 71 · 2026-08 52

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2022-303337.599.9KEVRARLAB UnRAR
CVE-2020-07877.898.6KEVMicrosoft Windows
CVE-2021-413795.597.2KEVWindows Installer Elevation of Privilege Vulnerability
CVE-2026-410917.895.1KEVMicrosoft Defender Elevation of Privilege Vulnerability
CVE-2019-10697.892.8KEVTask Scheduler Elevation of Privilege Vulnerability
CVE-2025-607107.890.9KEVHost Process for Windows Tasks Elevation of Privilege Vulnerability
CVE-2019-13857.888.6KEVMicrosoft Windows
CVE-2020-06387.886.5KEVMicrosoft Update Notification Manager
CVE-2019-11307.881.8KEVMicrosoft Windows
CVE-2026-506567.095.5Microsoft Defender Elevation of Privilege Vulnerability
CVE-2025-212047.893.6Windows Process Activation Elevation of Privilege Vulnerability
CVE-2026-613587.888.8Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege Vulnerability
CVE-2026-455867.888.6Windows Collaborative Translation Framework (CTFMON) Elevation of Privilege Vulnerability
CVE-2026-628327.882.4Windows User Profile Service Elevation of Privilege Vulnerability
CVE-2026-429897.881.7Winlogon Elevation of Privilege Vulnerability
CVE-2024-300766.875.5Windows Container Manager Service Elevation of Privilege Vulnerability
CVE-2023-369039.874.1Windows System Assessment Tool Elevation of Privilege Vulnerability
CVE-2024-301047.872.7Microsoft Office Remote Code Execution Vulnerability
CVE-2026-505499.367.4Cursor Desktop sandbox escape via symlink and failed path canonicalization
CVE-2025-304579.864.3

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
microsoft62
egor14
rsyncproject13
dell9
red hat8
apple5
filebrowser4
canonical3
lenovo3
anthropics2
anydesk2
bingos2
black lantern security2
canon2
chromedevtools2