boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-704

Weakness type CWE-704 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals
CVEs all-timeCVEs YTDKEV all-time
17150

Monthly trend

▂▁▁▁▁▂▁▁▁▁▁▁▁▃▅▆█

2025-09 1 · 2025-10 0 · 2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 0 · 2026-05 2 · 2026-06 3 · 2026-07 4 · 2026-08 6

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2026-158269.853.9User Profile Builder <= 3.16.4 - Unauthenticated Authentication Bypass via Type Confusi…
CVE-2026-465977.539.1Invoking byte arithmetic causes underflow and panic in golang.org/x/crypto/ssh
CVE-2026-456857.538.4OpenTelemetry eBPF Instrumentation: MongoDB parser panics on malformed wire messages
CVE-2026-481407.137.2Unchecked enum cast vulnerability in NI grpc-device in BeginSidebandStream
CVE-2025-516787.536.1
CVE-2026-443246.535.2free5GC: UDR nudr-dr DELETE amf-subscriptions panics on missing UE state via nil interf…
CVE-2026-598717.534.3node-tar: Process crash via PAX numeric path type confusion
CVE-2026-186755.331.7Kong Mesh: control plane denial of service via a malformed dataplane token with a non-s…
CVE-2026-503377.823.8Windows Notification Elevation of Privilege Vulnerability
CVE-2026-550767.423.5Coder's OIDC email_verified type coercion bypass enables account takeover via unverifie…
CVE-2025-398807.822.8libceph: fix invalid accesses to ceph_connection_v1_info
CVE-2026-100806.522.2Boards plugin panics on WebSocket command with non-string field types
CVE-2026-734295.321.7Russh: client wrong-length X25519 `clone_from_slice` panic (pre-auth DoS)
CVE-2026-537986.920.3rsync < 3.5.0 Privilege Confusion via name-converter uid/gid mapping
CVE-2025-220445.510.4acpi: nfit: fix narrowing conversion in acpi_nfit_ctl
CVE-2026-67267.95.9An information leakage vulnerability in the TCG TPM 2.0 reference code.
CVE-2026-466905.83.1unbounded-spsc: Sender::send pointer-as-value transmute causes OOB read and fake-Arc dr…

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
linux2
coder1
cozmoslabs1
eugeny1
free5gc1
golang.org/x/crypto1
isaacs1
kong1
mattermost1
microsoft1
ni1
open-telemetry1
rsyncproject1
spearman1
trusted computing group1