boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-693

Weakness type CWE-693 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
41138614

Monthly trend

▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▆▆▄█▁

2025-11 0 · 2025-12 2 · 2026-01 3 · 2026-02 2 · 2026-03 5 · 2026-04 3 · 2026-05 13 · 2026-06 90 · 2026-07 82 · 2026-08 60 · 2026-09 127 · 2026-10 1

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2024-214128.199.9KEVInternet Shortcut Files Security Feature Bypass Vulnerability
CVE-2013-24659.899.9KEVOracle Java SE
CVE-2019-10030309.999.9KEVJenkins Matrix Project Plugin
CVE-2013-04313.799.8KEVOracle Java Runtime Environment (JRE)
CVE-2025-405368.199.5KEVSolarWinds Web Help Desk Security Control Bypass Vulnerability
CVE-2025-04117.099.3KEV7-Zip Mark-of-the-Web Bypass Vulnerability
CVE-2024-299888.898.7KEVSmartScreen Prompt Security Feature Bypass Vulnerability
CVE-2026-215108.897.8KEVWindows Shell Security Feature Bypass Vulnerability
CVE-2026-215138.896.8KEVMSHTML Framework Security Feature Bypass Vulnerability
CVE-2024-382136.596.4KEVWindows Mark of the Web Security Feature Bypass Vulnerability
CVE-2024-382175.495.5KEVWindows Mark of the Web Security Feature Bypass Vulnerability
CVE-2026-322024.391.8KEVWindows Shell Spoofing Vulnerability
CVE-2024-382267.385.2KEVMicrosoft Publisher Security Feature Bypass Vulnerability
CVE-2026-587048.846.4KEV—
CVE-2026-506467.890.3—.NET Framework Remote Code Execution Vulnerability
CVE-2023-381576.583.9—Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
CVE-2026-278938.877.8—vLLM's hardcoded trust_remote_code=True in NemotronVL and KimiK25 bypasses user securit…
CVE-2025-274725.475.4—Windows Mark of the Web Security Feature Bypass Vulnerability
CVE-2024-300524.770.6—Visual Studio Remote Code Execution Vulnerability
CVE-2026-413168.169.6—ERB has an @_init deserialization guard bypass via def_module / def_method / def_class

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
google120
mozilla39
microsoft38
apple22
patriksimek14
mervinpraison9
twigphp9
jenkins project8
dell5
electron4
apache3
cure533
ibm3
jahlives3
palo alto networks3