boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Thursday, October 8, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-759

Weakness type CWE-759 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
990

Monthly trend

▆▁▁█▅▁

2026-05 3 · 2026-06 0 · 2026-07 0 · 2026-08 4 · 2026-09 2 · 2026-10 0

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2025-155446.925.7—Weak Credential Protection During TP-Link Omada Device Adoption
CVE-2026-93702.921.5—ulisesbocchio jasypt-spring-boot Password Hash SimpleGCMConfig.java getSecretKeySaltGen…
CVE-2025-156315.720.9—Weak Credential Storage in TP-Link Omada Devices
CVE-2026-450275.910.1—WeGIA: Use of Weak Password Hashing Algorithm (SHA-256, no salt) in html/login.php
CVE-2026-62176.36.9—Information Disclosure in Pik Online Software's Portal
CVE-2025-362715.94.8—IBM Integrated Analytics System (IIAS) is affected by a predictable salt vulnerability …
CVE-2026-965521.33.7—sfturing hosp_order User Password MD5.java MD5.getMD5 hash without salt
CVE-2026-457876.03.5—electerm's encrypt method not safe enough
CVE-2026-572637.01.2——

Most-affected vendors