Reference page — cumulative record through Thursday, October 8, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-760
Weakness type CWE-760 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 4 | 4 | 0 |
Monthly trend
█▁▁▁██▁▁█▁
2026-01 1 · 2026-02 0 · 2026-03 0 · 2026-04 0 · 2026-05 1 · 2026-06 1 · 2026-07 0 · 2026-08 0 · 2026-09 1 · 2026-10 0
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-9370 | 2.9 | 21.5 | — | ulisesbocchio jasypt-spring-boot Password Hash SimpleGCMConfig.java getSecretKeySaltGen… |
| CVE-2025-9290 | 6.0 | 12.1 | — | Authentication Weakness on Omada Controllers, Gateways and Access Points |
| CVE-2026-46749 | 4.9 | 8.9 | — | — |
| CVE-2026-82759 | 1.8 | 2.8 | — | Reversible IP address pseudonymisation in AshAuthentication audit log hash mode |
Most-affected vendors
| Vendor | CVEs |
|---|---|
| siemens | 1 |
| team-alembic | 1 |
| tp-link systems | 1 |
| ulisesbocchio | 1 |