boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Monday, October 5, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-665

Weakness type CWE-665 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
20133

Monthly trend

▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▁▂▁▁▂▁▁▁▁▁▁▂▁▁▁▁▁▁▁▁▁▁▁▁▁▄█▅▄▂

2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 0 · 2026-05 0 · 2026-06 2 · 2026-07 5 · 2026-08 3 · 2026-09 2 · 2026-10 1

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2022-08477.899.8KEVLinux Kernel
CVE-2020-279505.596.9KEVApple Multiple Products
CVE-2013-16756.593.7KEVMozilla Firefox
CVE-2024-385585.555.8—net: openvswitch: fix overwriting ct original tuple for ICMPv6
CVE-2026-647759.850.0——
CVE-2026-122335.941.1—Uninitialized mutex in TLS trusted-credential backend causes kernel NULL-deref DoS unde…
CVE-2026-542791.340.2—AIOHTTP: Host-Only Cookies Become Domain Cookies After CookieJar Persistence
CVE-2026-876168.336.1——
CVE-2026-544098.136.0——
CVE-2024-466975.533.7—nfsd: ensure that nfsd4_fattr_args.context is zeroed out
CVE-2026-572295.333.1—Suricata smtp/mime: incomplete state reset allows detection bypass
CVE-2026-624337.332.7—correct buffer checks for DM_OP hypercalls
CVE-2026-789404.323.6——
CVE-2021-471947.815.0—cfg80211: call cfg80211_stop_ap when switch from P2P_GO type
CVE-2025-219065.511.4—wifi: iwlwifi: mvm: clean up ROC on failure
CVE-2026-444345.310.1—Quicly is vulnerable to stateless reset injection
CVE-2026-934957.04.4——
CVE-2026-125395.72.8—Docker Sandboxes ICMP egress restriction bypass after daemon restart
CVE-2026-207345.61.6——
CVE-2026-547776.51.5—CoreWCF NetNamedPipe transport accepts attach to a pre-existing named pipe instance

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
linux4
apple2
google2
aio-libs1
asus1
corewcf1
docker1
h2o1
oisf1
ubiquiti1
xen1
zephyrproject1