Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-667
Weakness type CWE-667 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 156 | 68 | 2 |
Monthly trend
▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▂▁▅▂▂▂▃▁▂▂▁▃▂▂▂▁▂▁▁▁▁▁▁▁▁▁▅█▅▁▂▁
2025-11 0 · 2025-12 1 · 2026-01 1 · 2026-02 0 · 2026-03 0 · 2026-04 1 · 2026-05 15 · 2026-06 29 · 2026-07 16 · 2026-08 1 · 2026-09 4 · 2026-10 1
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2021-1782 | 7.0 | 82.1 | KEV | Apple Multiple Products |
| CVE-2025-43510 | 7.8 | 27.0 | KEV | Apple Multiple Products |
| CVE-2024-40980 | 5.5 | 53.6 | — | drop_monitor: replace spin_lock by raw_spin_lock |
| CVE-2024-41036 | 5.5 | 53.4 | — | net: ks8851: Fix deadlock with the SPI chip variant |
| CVE-2024-35971 | 5.5 | 51.1 | — | net: ks8851: Handle softirqs at the end of IRQ thread to fix hang |
| CVE-2026-53049 | 9.8 | 45.2 | — | gfs2: add some missing log locking |
| CVE-2021-47587 | 5.5 | 43.9 | — | net: systemport: Add global locking for descriptor lifecycle |
| CVE-2026-46031 | 7.5 | 42.7 | — | net: ks8851: Reinstate disabling of BHs around IRQ handler |
| CVE-2024-39468 | 5.5 | 42.7 | — | smb: client: fix deadlock in smb2_find_smb_tcon() |
| CVE-2026-64068 | 9.8 | 40.8 | — | netfs: Fix missing locking around retry adding new subreqs |
| CVE-2024-58087 | 8.1 | 40.8 | — | ksmbd: fix racy issue from session lookup and expire |
| CVE-2021-47041 | 5.5 | 40.3 | — | nvmet-tcp: fix incorrect locking in state_change sk callback |
| CVE-2026-52946 | 7.5 | 38.2 | — | fs/fcntl: fix SOFTIRQ-unsafe lock order in fasync signaling |
| CVE-2026-53071 | 8.8 | 35.0 | — | Bluetooth: l2cap: Add missing chan lock in l2cap_ecred_reconf_rsp |
| CVE-2026-64067 | 9.8 | 34.7 | — | netfs: Fix missing barriers when accessing stream->subrequests locklessly |
| CVE-2024-56694 | 5.5 | 33.1 | — | bpf: fix recursive lock when verdict program return SK_PASS |
| CVE-2024-27435 | 5.5 | 31.6 | — | nvme: fix reconnection fail due to reserved tag allocation |
| CVE-2024-35998 | 5.5 | 31.5 | — | smb3: fix lock ordering potential deadlock in cifs_sync_mid_result |
| CVE-2022-49768 | 5.5 | 31.0 | — | 9p: trans_fd/p9_conn_cancel: drop client lock earlier |
| CVE-2026-64374 | 7.5 | 30.4 | — | sched/rt: Have RT_PUSH_IPI be default off for non PREEMPT_RT |
Most-affected vendors
| Vendor | CVEs |
|---|---|
| linux | 141 |
| xen | 3 |
| apple | 2 |
| nvidia | 2 |
| dell | 1 |
| 1 | |
| nationalsecurityagency | 1 |
| nezhahq | 1 |
| open-telemetry | 1 |
| red hat | 1 |
| ruby-concurrency | 1 |
| zephyrproject | 1 |