Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-669
Weakness type CWE-669 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 31 | 29 | 1 |
Monthly trend
▂▁▁▁▁▁▁▁▁▁▁▁▁▁▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▁▂▃▄▁▅█▁
2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 1 · 2026-03 0 · 2026-04 1 · 2026-05 4 · 2026-06 5 · 2026-07 0 · 2026-08 6 · 2026-09 12 · 2026-10 0
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-31431 | 7.8 | 88.6 | KEV | crypto: algif_aead - Revert to operating out-of-place |
| CVE-2020-1048 | 7.8 | 96.9 | — | Windows Print Spooler Elevation of Privilege Vulnerability |
| CVE-2021-30120 | 7.5 | 92.8 | — | 2FA bypass in Kaseya VSA <= v9.5.6 |
| CVE-2026-75003 | 9.8 | 45.6 | — | — |
| CVE-2026-48847 | 3.7 | 43.5 | — | — |
| CVE-2026-71194 | 6.8 | 41.8 | — | — |
| CVE-2026-48846 | 6.5 | 39.1 | — | — |
| CVE-2026-44917 | 4.9 | 38.7 | — | — |
| CVE-2026-75000 | 5.8 | 38.5 | — | — |
| CVE-2026-40552 | 4.7 | 38.4 | — | Remote Code Execution in multiple BinSoft products |
| CVE-2026-92952 | 8.9 | 37.7 | — | vm2 3.11.4 through 3.11.6 Sandbox Symbol Filtering Bypass |
| CVE-2026-46448 | 8.5 | 37.5 | — | — |
| CVE-2026-20194 | 9.1 | 36.6 | — | Cisco Identity Services Engine Hardening Release - Incorrect Resource Transfer Vulnerab… |
| CVE-2026-48845 | 6.5 | 36.5 | — | — |
| CVE-2026-46447 | 7.7 | 35.3 | — | — |
| CVE-2026-87724 | 6.5 | 34.9 | — | — |
| CVE-2026-75010 | 4.3 | 30.9 | — | — |
| CVE-2026-24708 | 8.2 | 29.7 | — | — |
| CVE-2026-14151 | 8.3 | 24.0 | — | — |
| CVE-2026-73574 | 6.5 | 23.5 | — | — |