Reference page — cumulative record through Monday, October 5, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CWE-820
Weakness type CWE-820 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
Totals
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 6 | 6 | 0 |
Monthly trend
▅█▅▅▅▁
2026-05 1 · 2026-06 2 · 2026-07 1 · 2026-08 1 · 2026-09 1 · 2026-10 0
Top CVEs
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-50013 | 7.5 | 38.5 | — | Hoverfly: Process Crash via Concurrent Map Write Race Condition in Diff Mode |
| CVE-2026-44318 | 5.3 | 35.2 | — | free5GC: BSF concurrent PUT /nbsf-management/v1/subscriptions/{subId} crashes the BSF p… |
| CVE-2026-70637 | 8.2 | 28.0 | — | LightFTP 2.4 Data Race Condition via ABOR Command in ftpserv.c |
| CVE-2026-57029 | 6.0 | 7.8 | — | Junos OS Evolved: QFX Series: When sFlow collector reachability changes evo-pfemand pro… |
| CVE-2026-53277 | 8.8 | 3.8 | — | KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation |
| CVE-2026-53153 | 7.8 | 0.8 | — | mm/list_lru: drain before clearing xarray entry on reparent |
Most-affected vendors
| Vendor | CVEs |
|---|---|
| linux | 2 |
| free5gc | 1 |
| hfiref0x | 1 |
| juniper networks | 1 |
| spectolabs | 1 |