Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-791 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 6 | 6 | 0 |
▃▆▁█
2026-05 1 · 2026-06 2 · 2026-07 0 · 2026-08 3
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-18632 | 2.1 | 30.9 | — | langgenius dify Jinja2 jinja2_transformer.py jinja2.Template special elements used in a… |
| CVE-2026-11998 | 7.6 | 26.3 | — | AngularJS XSS via SCE resource URL sanitization bypass |
| CVE-2026-48208 | 6.5 | 26.3 | — | Denial-of-Service via SVG Rendering in Ticket |
| CVE-2026-75979 | 5.3 | 23.2 | — | xianrendzw EasyReport SQL Preview Endpoint DesignerController.java previewSqlText speci… |
| CVE-2026-9498 | 2.1 | 22.1 | — | Dromara lamp-cloud Message Template GroovyClassLoader.parseClass special elements used … |
| CVE-2026-19929 | 2.1 | 21.0 | — | OpenBoxes Template Processing DocumentController.groovy buildZebraTemplate special elem… |
| Vendor | CVEs |
|---|---|
| dromara | 1 |
| 1 | |
| langgenius | 1 |
| otrs | 1 |
| xianrendzw | 1 |