Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-799 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 8 | 8 | 0 |
▅▅█
2026-06 2 · 2026-07 2 · 2026-08 4
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-75773 | 2.9 | 42.3 | — | karakeep-app karakeep Login Endpoint auth.ts authorize excessive authentication |
| CVE-2026-19898 | 2.9 | 39.7 | — | VictoriaMetrics VMAuth Authentication Endpoint main.go requestHandler excessive authent… |
| CVE-2026-10216 | 2.9 | 34.0 | — | unitedbyai droidclaw claim Endpoint pairing.ts excessive authentication |
| CVE-2026-19895 | 2.9 | 33.6 | — | opensourcepos Open Source Point of Sale Login Endpoint Filters.php index excessive auth… |
| CVE-2026-19897 | 2.9 | 30.2 | — | mangroup dtale Login Endpoint auth.py login excessive authentication |
| CVE-2026-33434 | 7.1 | 18.6 | — | Wazuh: Rate Limit Bypass via /events Endpoint |
| CVE-2024-23565 | 5.3 | 15.0 | — | — |
| CVE-2026-5233 | 7.1 | 10.8 | — | Missing Rate Limiting in Mia Technologies' Pizzy Library |
| Vendor | CVEs |
|---|---|
| hclsoftware | 1 |
| karakeep-app | 1 |
| mangroup | 1 |
| mia technology | 1 |
| opensourcepos | 1 |
| unitedbyai | 1 |
| wazuh | 1 |