boxscore/security
CWE · referenceWeaknesses · latest edition

Reference page — cumulative record through Wednesday, October 7, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CWE-91

Weakness type CWE-91 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.

Totals

Totals
CVEs all-timeCVEs YTDKEV all-time
29271

Monthly trend

▂▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▁▁▁▁▄▃▃▃█▁

2025-11 0 · 2025-12 1 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 0 · 2026-05 5 · 2026-06 3 · 2026-07 3 · 2026-08 3 · 2026-09 13 · 2026-10 0

Top CVEs

Ranked by KEV → EPSS → CVSS (§6)
CVECVSSEPSS %ileKEVTitle
CVE-2020-06469.899.9KEVMicrosoft .NET Framework
CVE-2026-769797.765.2—XML Injection vulnerability
CVE-2026-401658.750.7—authentik: SAML NameID XML Comment Injection Enables Authentication Bypass via Identifi…
CVE-2026-416728.749.5—xmldom: XML node injection through unvalidated comment serialization
CVE-2026-416748.749.5—xmldom: XML injection through unvalidated DocumentType serialization
CVE-2026-1021167.248.8—Kiteworks Email Protection Gateway Path Traversal
CVE-2026-416758.748.6—xmldom: XML node injection through unvalidated processing instruction serialization
CVE-2026-836058.747.6—xmldom: Attribute name injection via setAttribute() bypasses requireWellFormed
CVE-2026-836078.747.6—xmldom: Element name injection via createElement() bypasses requireWellFormed
CVE-2026-836088.747.6—xmldom: DocType `name` Injection Bypasses requireWellFormed
CVE-2026-836168.747.6—xmldom: Processing Instruction Target Injection Bypasses requireWellFormed
CVE-2026-243294.947.0—Wildfly-core: wildfly core: denial of service via malformed payload injection by an aut…
CVE-2026-836178.745.3—xmldom: requireWellFormed element/attribute name validation is bypassable via an embedd…
CVE-2026-836188.745.3—xmldom: requireWellFormed DocType publicId/systemId validation is bypassable via an emb…
CVE-2026-464908.745.1—samlify: XML Injection in AttributeValue Allows Privilege Escalation in Signed SAML Ass…
CVE-2026-836098.743.7—xmldom: Creation-time XML Name/QName validation is bypassable via an embedded line term…
CVE-2025-15458.239.3—WatchGuard Firebox XPath Injection Vulnerability in Web CGI
CVE-2026-150372.936.5—XML injection vulnerability in QDom comment, CDATA and processing-instruction serializa…
CVE-2026-651248.136.2——
CVE-2026-1030449.835.8—EasyTimeline should not serve image maps as application/xml

Most-affected vendors

Vendors with the most CVEs of this type
VendorCVEs
xmldom10
@xmldom7
joshnuss2
goauthentik1
google1
guzzle1
ibm1
kiteworks1
logto-io1
mcdope1
microsoft1
nvidia1
qt1
red hat1
the wikimedia foundation1