boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-606

Weakness type CWE-606 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals
CVEs all-timeCVEs YTDKEV all-time
19190

Monthly trend

▂▁▇▆▅█

2026-03 1 · 2026-04 0 · 2026-05 5 · 2026-06 4 · 2026-07 3 · 2026-08 6

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2026-15197.573.8Excessive NSEC3 iterations cause high CPU load during insecure delegation validation
CVE-2026-629017.561.8.NET Denial of Service Vulnerability
CVE-2026-398207.553.2Quadratic string concatentation in consumeComment in net/mail
CVE-2026-338147.553.1Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/in…
CVE-2026-425617.551.8Python-Multipart: Denial of Service via unbounded multipart part headers
CVE-2026-59505.348.8Unbounded resend loop in BIND 9 resolver
CVE-2026-271456.545.7Inefficient candidate hostname parsing in crypto/x509
CVE-2026-442897.545.1protobufjs: Denial of service through unbounded protobuf recursion
CVE-2026-101438.741.8kafka-python prior to 2.3.2 DoS via SCRAM Iteration Count in scram.py
CVE-2026-119728.237.2tarfile opened in streaming mode mishandles EOF
CVE-2026-662766.535.4Apache Qpid Proton-J: Unbounded disposition range handling can lead to denial of service
CVE-2026-680776.535.4Apache Qpid Broker-J: Unbounded disposition range handling can lead to denial of service
CVE-2026-675546.534.6Apache Qpid Proton Dotnet: Unbounded disposition range handling can lead to denial of s…
CVE-2026-714395.332.4Mermaid radar diagrams are vulnerable to DoS
CVE-2026-203018.625.7Cisco IOS Software and IOS XE Software Extensible Messaging Client Protocol Denial of S…
CVE-2026-557316.625.1Loytec LINX firmware: Unchecked input for loop condition in the SNMP agent
CVE-2026-338007.16.2Junos OS: MX Series: In a VC scenario a high rate of micro-BFD session flaps will cause…
CVE-2026-151725.52.4Unchecked Input for Loop Condition in Wireshark
CVE-2026-419862.41.4

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
apache3
go standard library3
isc2
cisco1
dana powers1
golang.org/x/net1
huawei1
juniper networks1
kludex1
loytec1
mermaid-js1
microsoft1
protobufjs1
python software foundation1
wireshark foundation1