Reference page — cumulative record through Tuesday, October 6, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-758
Weakness type CWE-758 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 6 | 6 | 0 |
Monthly trend
▅▁▁▁▁▅█▁█▁
2026-01 1 · 2026-02 0 · 2026-03 0 · 2026-04 0 · 2026-05 0 · 2026-06 1 · 2026-07 2 · 2026-08 0 · 2026-09 2 · 2026-10 0
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-22858 | 5.6 | 51.0 | — | FreeRDP has a global-buffer-overflow in crypto_base64_decode |
| CVE-2026-16441 | 6.9 | 43.1 | — | Eclipse OpenJ9 : Method resolution default method precedence failure |
| CVE-2026-54604 | 5.3 | 42.7 | — | OpenSlide: openslide_read_region() returns uninitialized memory with libtiff 4.7.1 |
| CVE-2026-100771 | 8.1 | 23.7 | — | Undefined behavior in the DOM: Streams component |
| CVE-2026-50185 | 2.0 | 4.7 | — | RustCrypto Cmov/CmovEq on aarch64 can produce wrong results if high-bits of registers a… |
| CVE-2024-58350 | 2.1 | 1.2 | — | Ghidra < 11.2 - Use After Free in Sleigh Backend via Static Initialization Order |
Most-affected vendors
| Vendor | CVEs |
|---|---|
| eclipse foundation | 1 |
| freerdp | 1 |
| mozilla | 1 |
| nationalsecurityagency | 1 |
| openslide | 1 |
| rustcrypto | 1 |