boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-703

Weakness type CWE-703 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals
CVEs all-timeCVEs YTDKEV all-time
17170

Monthly trend

▂▁▂▁▁▄▅█

2026-01 1 · 2026-02 0 · 2026-03 1 · 2026-04 0 · 2026-05 0 · 2026-06 3 · 2026-07 4 · 2026-08 8

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2026-217207.546.9Unauthenticated DoS: avatar cache leaks goroutines when /avatar/:hash requests time out
CVE-2026-448937.546.9Netty: HAProxy SSL TLV parsing leaks retained slice on invalid TLV length
CVE-2026-568186.538.6Netty: RedisArrayAggregator max-elements failure leaves retained partial aggregate state
CVE-2026-516007.533.8
CVE-2025-593227.529.3
CVE-2026-186386.521.5Velociraptor server crash via the SetPassword API
CVE-2026-563386.920.7Capgo - Denial of Service in 2FA Email Verification via /auth/v1/otp Endpoint
CVE-2026-201877.519.0Cisco RoomOS Security Hardening Release - Exceptional Conditions Handling Vulnerabilities
CVE-2026-123247.311.3Incorrect boundary conditions in the Graphics: CanvasWebGL component
CVE-2026-653314.310.4
CVE-2026-653324.310.4
CVE-2026-653374.310.4
CVE-2026-653404.310.4
CVE-2026-162182.110.2hunvreus devpush Storage Reset Failure storage.py reset_storage improper check or handl…
CVE-2026-653514.39.6
CVE-2026-387635.57.5
CVE-2026-00118.41.7

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
apple5
netty2
capgo1
cisco1
google1
grafana1
hunvreus1
mozilla1
rapid71