CWE-310: Definition for CWE-310
Intel-seeded record for CWE-310
90 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2024-38408 — Cryptographic Issues in BT Controller
- CVE-2025-9146 — Linksys E5600 Firmware checkFw.sh verify_gemtek_header risky encryption
- CVE-2025-21482 — Cryptographic Issues in Core
- CVE-2025-21422 — Cryptographic Issues in Automotive
- CVE-2026-2966 — Cesanta Mongoose DNS Transaction ID dns.c mg_sendnsreq random values
- CVE-2026-2618 — Beetel 777VR1 SSH Service risky encryption
- CVE-2025-9828 — Tenda CP6 uhttp sub_2B7D04 risky encryption
- CVE-2025-9513 — editso fuso mod.rs PenetrateRsaAndAesHandshake inadequate encryption
- CVE-2025-9239 — elunez eladmin DES Key EncryptUtils.java EncryptUtils inadequate encryption
- CVE-2025-8763 — Ruijie EG306MG strongSwan strongswan.conf missing encryption
- CVE-2025-8741 — macrozheng mall login cleartext transmission
- CVE-2025-8205 — Comodo Dragon IP DNS Leakage Detector cleartext transmission
- CVE-2025-5136 — Tmall Demo Payment Identifier pay random values
- CVE-2025-4894 — calmkart Django-sso-server crypto.py gen_rsa_keys inadequate encryption
- CVE-2025-10776 — LionCoders SalePro POS Login cleartext transmission
- CVE-2025-10671 — youth-is-as-pale-as-poetry e-learning JWT Token JwtUtils.java encryptSecret random values
- CVE-2025-0784 — Intelbras InControl Registered User usuario cleartext transmission
- CVE-2026-49000 — Cryptography Implementation Flaw vulnerability in ZTE ZXUniPOS NDS-LTE product
- CVE-2026-86280 — SourceCodester Syllabus-Aligned Learning Management & Examination System cict_portal.sql cleartext storage
- CVE-2026-17616 — Security vulnerabilities have been found in IBM Verify Identity Access and IBM Security Verify Access
Recently published
- CVE-2026-86280 — SourceCodester Syllabus-Aligned Learning Management & Examination System cict_portal.sql cleartext storage
- CVE-2026-82699 — sambitraj Student Management System Password aca.sql cleartext storage
- CVE-2026-82555 — TOTOLINK N600R Authentication cstecgi.cgi loginAuth random values
- CVE-2026-81836 — RooCodeInc Roo-Code OAuth Callback oauth.ts cleartext transmission
- CVE-2026-77151 — lin-snow Ech0 crypto.go MD5Encrypt risky encryption
- CVE-2026-19896 — mangroup dtale Flask Session Cookie app.py build_secret_key random values
- CVE-2026-19891 — TRENDnet TEW-WLC100 IKE Phase 1 Aggressive Mode racoon.conf missing encryption
- CVE-2026-17616 — Security vulnerabilities have been found in IBM Verify Identity Access and IBM Security Verify Access
- CVE-2026-18591 — Meesho Online Shopping App com.meesho.supply cleartext storage
- CVE-2026-16213 — Fantomas42 django-blog-zinnia Protected Entry Password entry_protection.py cleartext storage
- CVE-2026-14702 — zcaceres markdownify-mcp webpage-to-markdown Markdownify.ts saveToTempFile random values
- CVE-2026-49000 — Cryptography Implementation Flaw vulnerability in ZTE ZXUniPOS NDS-LTE product
- CVE-2026-7847 — chatchat-space Langchain-Chatchat Uploaded File openai_routes.py _get_file_id random values
- CVE-2026-7610 — TRENDnet TEW-821DAP Firmware Update ssi cleartext transmission
- CVE-2026-5682 — Meesho Online Shopping App com.meesho.supply endpoint risky encryption
- CVE-2026-4584 — Shenzhen HCC Technology MPOS M6 PLUS Cardholder Data cleartext transmission
- CVE-2025-15603 — A security vulnerability has been detected in open-webui up to 0.6.16. Affected is an unknown function of the file backe
- CVE-2026-2671 — Mendi Neurofeedback Headset Bluetooth Low Energy cleartext transmission
- CVE-2026-2966 — Cesanta Mongoose DNS Transaction ID dns.c mg_sendnsreq random values
- CVE-2026-2618 — Beetel 777VR1 SSH Service risky encryption