Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-99 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 8 | 8 | 0 |
▅█▃▃
2026-05 2 · 2026-06 4 · 2026-07 1 · 2026-08 1
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2026-62910 | 8.8 | 49.5 | — | Microsoft Exchange Server Elevation of Privilege Vulnerability |
| CVE-2026-9438 | 2.1 | 25.3 | — | yashpokharna2555 StudentManagementSystem courseDel.php resource injection |
| CVE-2026-10299 | 2.0 | 19.9 | — | code-projects Online Hospital Management System viewdoctortimings.php resource injection |
| CVE-2026-10168 | 2.1 | 15.7 | — | OUSL-GROUP-BrinaryBrains School Student Management System Parents.php marks resource in… |
| CVE-2026-10624 | 2.1 | 15.6 | — | SourceCodester Human Resource Management Employee View detailview.php resource injection |
| CVE-2026-15186 | 2.1 | 15.0 | — | macrozheng mall Portal Endpoint create resource injection |
| CVE-2026-13493 | 1.3 | 14.3 | — | AIDC-AI ComfyUI-Copilot Workflow Checkpoint Restore conversation_api.py resource injection |
| CVE-2026-12207 | 2.1 | 13.6 | — | medkey-org medkey HTTP REST API PatientController.php actionGetPatientById resource inj… |
| Vendor | CVEs |
|---|---|
| aidc-ai | 1 |
| code-projects | 1 |
| macrozheng | 1 |
| medkey-org | 1 |
| microsoft | 1 |
| ousl-group-brinarybrains | 1 |
| sourcecodester | 1 |
| yashpokharna2555 | 1 |