boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-763

Weakness type CWE-763 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
25180

Monthly trend

▂▁▂▁▃▁▁▁▁▂▁▂▁▁▁▁▁▁▁▁▁▂▁▁▁▂▃▄▃▄█▁

2025-11 0 · 2025-12 1 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 1 · 2026-05 2 · 2026-06 3 · 2026-07 2 · 2026-08 3 · 2026-09 7 · 2026-10 0

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2025-484317.563.9—Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid po…
CVE-2026-95167.547.7—Cpanel::JSON::XS versions before 4.41 for Perl allow denial of service via UTF-8 BOM pr…
CVE-2025-118388.740.3—WatchGuard Firebox iked Memory Corruption Vulnerability
CVE-2026-157184.339.9—Invalid pointer in the JavaScript: WebAssembly component
CVE-2026-193159.337.5—Fireware OS Pre-Authentication Type Confusion in iked Allows Remote Code Execution
CVE-2026-749478.836.8—Privilege escalation due to invalid pointer in the Graphics component
CVE-2026-748608.535.6—Libxml2: double-free/uaf in libxml2 python bindings
CVE-2026-529939.832.3—tipc: fix double-free in tipc_buf_append()
CVE-2026-841318.824.6—Privilege escalation due to invalid pointer in the Graphics component
CVE-2026-775007.824.4—Windows Device Association Service Elevation of Privilege Vulnerability
CVE-2022-491605.523.5—scsi: qla2xxx: Fix crash during module load unload test
CVE-2024-421327.119.6—bluetooth/hci: disallow setting handle bigger than HCI_CONN_HANDLE_MAX
CVE-2024-409795.517.2—wifi: ath12k: fix kernel crash during resume
CVE-2026-883407.614.8——
CVE-2026-1008138.814.5—Invalid pointer in the JavaScript Engine: JIT component
CVE-2024-368905.513.4—mm/slab: make __free(kfree) accept error pointers
CVE-2021-470877.813.3—tee: optee: Fix incorrect page free bug
CVE-2024-565735.513.0—efi/libstub: Free correct pointer on failure
CVE-2023-205116.412.9——
CVE-2026-530007.87.9—netfilter: nat: use kfree_rcu to release ops

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
linux11
mozilla4
watchguard2
amd1
apache1
asus1
foxit software1
microsoft1
red hat1
rurban1