boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-610

Weakness type CWE-610 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals
CVEs all-timeCVEs YTDKEV all-time
12120

Monthly trend

▄██▁

2026-05 2 · 2026-06 5 · 2026-07 5 · 2026-08 0

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2026-476439.852.2Azure Stack Edge Remote Code Execution Vulnerability
CVE-2026-343278.247.8Microsoft Partner Center Spoofing Vulnerability
CVE-2026-155838.640.3SSRF (confused deputy) in Grafana MCP Server via X-Grafana-URL header
CVE-2026-573018.835.9
CVE-2026-108167.134.8Arbitrary File Read (Unauthenticated)
CVE-2026-127882.133.4zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 XML Parser import xml …
CVE-2026-553897.530.7datamodel-code-generator vulnerable to arbitrary local file read via JSON-Schema `$ref`…
CVE-2026-553907.529.3Arbitrary local file read via XSD `schemaLocation` (`xs:include`/`xs:import`) path trav…
CVE-2026-457608.125.5Apache Camel K: Camel K Cross-Namespace Build Deputy Attack
CVE-2026-04184.316.0Certain NETGEAR devices allow administrators to tamper with system
CVE-2026-685626.212.7Ansible-collection-redhat-leapp: ansible-collection-redhat-leapp: information disclosur…
CVE-2026-128795.98.8Cross-Tenant Data Exfiltration in Apigee via BigQuery Confused Deputy

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
koxudaxi2
microsoft2
apache1
google cloud1
grafana1
jenkins project1
netgear1
netscaler1
red hat1
zhilink 智互联(深圳)科技有限公司1