Reference page — cumulative record through Monday, October 5, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-641
Weakness type CWE-641 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 6 | 5 | 0 |
Monthly trend
█▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁█▁████▁
2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 1 · 2026-05 0 · 2026-06 1 · 2026-07 1 · 2026-08 1 · 2026-09 1 · 2026-10 0
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2024-30063 | 6.7 | 62.2 | — | Windows Distributed File System (DFS) Remote Code Execution Vulnerability |
| CVE-2026-50023 | 9.6 | 50.0 | — | yt-dlp: Dangerous file type creation via insufficient filename sanitization (Bypass of … |
| CVE-2026-27140 | 8.8 | 49.8 | — | Code execution vulnerability in SWIG code generation in cmd/go |
| CVE-2026-20282 | 4.9 | 44.4 | — | Cisco Identity Services Engine Authenticated Write Vulnerability |
| CVE-2026-46581 | 7.5 | 44.4 | — | — |
| CVE-2026-50510 | 7.8 | 27.4 | — | GitHub Copilot Remote Code Execution Vulnerability |
Most-affected vendors
| Vendor | CVEs |
|---|---|
| microsoft | 2 |
| cisco | 1 |
| eclipse foundation | 1 |
| go toolchain | 1 |
| yt-dlp | 1 |