boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-665

Weakness type CWE-665 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals
CVEs all-timeCVEs YTDKEV all-time
1390

Monthly trend

▂▁▂▁▁▂▁▁▁▁▁▁▂▁▁▁▁▁▁▁▁▁▁▁▁▁▄█▄

2025-09 0 · 2025-10 0 · 2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 0 · 2026-05 0 · 2026-06 2 · 2026-07 5 · 2026-08 2

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2024-385585.554.5net: openvswitch: fix overwriting ct original tuple for ICMPv6
CVE-2024-466975.534.9nfsd: ensure that nfsd4_fattr_args.context is zeroed out
CVE-2026-647759.829.9
CVE-2026-122335.923.4Uninitialized mutex in TLS trusted-credential backend causes kernel NULL-deref DoS unde…
CVE-2026-542791.320.4AIOHTTP: Host-Only Cookies Become Domain Cookies After CookieJar Persistence
CVE-2026-544098.119.7
CVE-2026-624337.318.2correct buffer checks for DM_OP hypercalls
CVE-2021-471947.816.6cfg80211: call cfg80211_stop_ap when switch from P2P_GO type
CVE-2025-219065.511.4wifi: iwlwifi: mvm: clean up ROC on failure
CVE-2026-444345.34.5Quicly is vulnerable to stateless reset injection
CVE-2026-125395.73.8Docker Sandboxes ICMP egress restriction bypass after daemon restart
CVE-2026-207345.62.1
CVE-2026-547776.50.5CoreWCF NetNamedPipe transport accepts attach to a pre-existing named pipe instance

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
linux4
aio-libs1
apple1
corewcf1
docker1
h2o1
ubiquiti1
xen1
zephyrproject1