boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-696

Weakness type CWE-696 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
14140

Monthly trend

▅▃█▅█▃

2026-05 2 · 2026-06 1 · 2026-07 4 · 2026-08 2 · 2026-09 4 · 2026-10 1

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2026-441089.356.1—Firewall bypass during shutdown
CVE-2026-651006.345.8—Apache Traffic Server: HPACK encoder desynchronizes from the decoder after a failed hea…
CVE-2026-141698.142.0—ads-tec Industrial IT: Account lockout via non-atomic user creation
CVE-2026-672176.935.4—cJSON JSON Patch Non-Atomic Application Destroys Data Before Validation
CVE-2026-563553.732.3——
CVE-2026-689306.529.2—Russh: Channel-scoped server callbacks can be reached without an open channel
CVE-2026-734467.016.8—Security Advisory 0160
CVE-2026-593053.810.3—Partition interceptor may be improperly added while sending message
CVE-2026-493171.09.4—Indian Scout Bobber 2025 Infotainment Digital Round skips PIN entry when WCM is silent …
CVE-2026-493181.09.4—Indian Scout Bobber 2025 Infotainment Digital Round skips PIN entry when WCM is silent …
CVE-2026-933304.37.9——
CVE-2026-1033535.37.4—WordPress FluentForm plugin <= 6.2.14 - Broken Access Control vulnerability
CVE-2026-933046.33.6—(D)TLS 1.2 client accepts early ChangeCipherSpec before ClientKeyExchange
CVE-2026-1030122.01.0——

Most-affected vendors