Common Weakness Enumeration (CWE) Program
cweprogram.bsky.social
Common Weakness Enumeration (CWE) Program
@cweprogram.bsky.social
Account maintained by the Common Weakness Enumeration (CWE™) Program to update the community on CWE-related announcements.
https://cwe.mitre.org
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 10/10/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)

Topic:
- Review HW submission: “Improper Request Propagation before Data Reception in Write Transactions in a Bus Architecture”

Join #HW SIG: bit.ly/3SCkqyk
CWE - CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
October 7, 2025 at 3:34 PM
#CWE 4.18 is now available! This latest release includes 1 new view related to the recently released “2025 Most Important Hardware Weaknesses,” 1 new AI weakness, usability improvements for 14 CWE entries including diagrams & more

cwe.mitre.org/news/archive...
September 10, 2025 at 12:03 PM
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 9/12/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)

Topic:
- CWE Gaps Identified in Most Important Hardware Weaknesses (MIHW) Analysis

Join #HW SIG: bit.ly/3SCkqyk
CWE - CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
September 9, 2025 at 1:46 PM
#CWE User Experience Working Group (UEWG) members — Reminder that our next meeting is tomorrow, Wednesday, 8/27/2025, at 12:00-1:00PM EDT

Topics:
- Weakness Remediation
- CWE Survey Updates
- Open Discussion

Join CWE UEWG: bit.ly/3CIylfz
CWE - CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
August 26, 2025 at 4:29 PM
The #CWE “2025 Most Important Hardware Weaknesses (MIHW)” has arrived!

See what’s included, check out the new methodology, and more!

#hardware #hw cwe.mitre.org/topHW/
August 20, 2025 at 4:16 PM
Check out this “We Speak CVE Podcast” about mapping the roots causes of CVEs to CWEs

youtu.be/3nNmrv4j1YE

#CWE #CVE #Vulnerability #VulnerabilityManagement #InformationSecurity #Cybersecurity
Mapping the Root Causes of CVEs
YouTube video by CVE™ Program
youtu.be
August 7, 2025 at 10:04 PM
#CWE User Experience Working Group (UEWG) members — Reminder that our next meeting is tomorrow, Wednesday, 7/30/2025, at 12:00-1:00PM EDT

Topics:
- CWE Survey Ideas?
- Open Discussion

Join CWE UEWG: bit.ly/3CIylfz
CWE - CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
July 29, 2025 at 2:27 PM
Listen to Alexander Bushkin & Jeremy West of #RedHat discuss “How Do We Leverage CVE Root Cause Mapping and CWE Data to Prevent New Vulnerabilities?” in this video from #VULNCON25

youtu.be/5bRA2Qxqzd0 #CVE #CWE
How Do We Leverage CVE Root Cause Mapping and CWE Data to Prevent New Vulnerabilities?
YouTube video by FIRST
youtu.be
July 16, 2025 at 10:06 PM
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 7/11/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)

Topic:
- HW Memory Weaknesses Working Session

Join #HW SIG: bit.ly/3SCkqyk
CWE - CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
July 8, 2025 at 4:30 PM
Hear how the CVE Numbering Authority (#CNA) community is enhancing #CVE Records with Root Cause Mapping (RCM) of their CVEs to #CWEs, challenges & practical solutions, & how an LLM can help in this video from #VULNCON25

youtu.be/TH1tGO15K24
July 2, 2025 at 2:04 PM
Learn about CWE’s most important problems and where they fit within the challenges faced by the broader #vulnerabilitymanagement / #softwaresecurity ecosystem in this video from #VULNCON25

youtu.be/RcR-EFSptnQ #CVE #CWE
June 19, 2025 at 2:32 PM
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 6/13/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)

Topic:
- Continue discussion regarding Memory Access Related Weaknesses as they relate to hardware

Join HW SIG: bit.ly/3SCkqyk
CWE - CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
June 11, 2025 at 8:40 PM
#CWE User Experience Working Group (UEWG) members — Reminder that our next meeting is Wednesday, 5/28/2025, at 12:00-1:00PM EST

Topics:
- CWE and Proactive Vulnerability Management
- CWE Content Development Repository (CDR) Overview
- Open Discussion

About CWE UEWG: bit.ly/3CIylfz
CWE - CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
May 27, 2025 at 1:52 PM
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 5/9/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)

Topic:
- Memory Access Weaknesses in HW discussion
- Most Important Hardware Weaknesses Working Group (MIHW WG) update

Join HW SIG: bit.ly/3SCkqyk
CWE - CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
May 7, 2025 at 3:22 PM
Learn @ the #CWE Top 25, it’s value to defenders, & how #CVE CNAs help create the list; the purpose & benefits of mapping the root causes of vulnerabilities identified in CVE Records to CWE #weaknesses; Root Cause Mapping (RCM) tips; & much more!

www.youtube.com/watch?v=8pe6...
Root Cause Mapping and the CWE Top 25
YouTube video by CWE Program
www.youtube.com
April 15, 2025 at 7:05 PM
Thank you so much to everyone who attended the #CWE talks at the #VulnCon25 conference!!!

We’re already looking forward to next year’s event!

#CVE #FIRST cwe.mitre.org
April 15, 2025 at 3:35 PM
Hardware #CWE SIG members—Reminder that our next meeting is tomorrow, Friday, 4/11/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)

Topic:
- Most Important Hardware Weaknesses Working Group (MIHW WG) update

HW CWE SIG info: bit.ly/3SCkqyk
April 10, 2025 at 3:58 PM
Day 4 of “CVE/FIRST VulnCon 2025”!

Today’s agenda for all 4 tracks:
first.org/conference/v...

#CWE #VulnerabilityManagement #Vulnerability #CVE #FIRST #VulnCon25
April 10, 2025 at 1:31 PM
Day 3 of “CVE/FIRST VulnCon 2025”!

Today’s agenda for all 3 tracks: first.org/conference/v...

#CWE #VulnerabilityManagement #Vulnerability #CVE #FIRST #VulnCon25
April 9, 2025 at 1:36 PM
Want to know the top ten #CWEs in CISA’s “Known Exploited Vulnerabilities (#KEV) Catalog”?

The “2024 CWE Top 10 KEV Weaknesses” list is now available on the CWE website!

List - cwe.mitre.org/top25/archiv...
Key Insights - cwe.mitre.org/top25/archiv...
Methodology - cwe.mitre.org/top25/archiv...
April 9, 2025 at 1:35 PM