Common Weakness Enumeration (CWE) Program
@cweprogram.bsky.social
Account maintained by the Common Weakness Enumeration (CWE™) Program to update the community on CWE-related announcements.
https://cwe.mitre.org
https://cwe.mitre.org
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 10/10/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)
Topic:
- Review HW submission: “Improper Request Propagation before Data Reception in Write Transactions in a Bus Architecture”
Join #HW SIG: bit.ly/3SCkqyk
Topic:
- Review HW submission: “Improper Request Propagation before Data Reception in Write Transactions in a Bus Architecture”
Join #HW SIG: bit.ly/3SCkqyk
CWE -
CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
October 7, 2025 at 3:34 PM
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 10/10/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)
Topic:
- Review HW submission: “Improper Request Propagation before Data Reception in Write Transactions in a Bus Architecture”
Join #HW SIG: bit.ly/3SCkqyk
Topic:
- Review HW submission: “Improper Request Propagation before Data Reception in Write Transactions in a Bus Architecture”
Join #HW SIG: bit.ly/3SCkqyk
New on the #CWE Blog:
“2025 CWE™ Most Important Hardware Weaknesses” Now Available
medium.com/@CWE_CAPEC/2...
#hardware #hw #informationtechnology #informationsecurity #cybersecurity
“2025 CWE™ Most Important Hardware Weaknesses” Now Available
medium.com/@CWE_CAPEC/2...
#hardware #hw #informationtechnology #informationsecurity #cybersecurity
“2025 CWE™ Most Important Hardware Weaknesses” Now Available
The “2025 CWE™ Most Important Hardware Weaknesses” (2025 MIHW) was released on August 20, 2025, on the CWE website.
medium.com
October 7, 2025 at 2:21 PM
New on the #CWE Blog:
“2025 CWE™ Most Important Hardware Weaknesses” Now Available
medium.com/@CWE_CAPEC/2...
#hardware #hw #informationtechnology #informationsecurity #cybersecurity
“2025 CWE™ Most Important Hardware Weaknesses” Now Available
medium.com/@CWE_CAPEC/2...
#hardware #hw #informationtechnology #informationsecurity #cybersecurity
#CWE 4.18 is now available! This latest release includes 1 new view related to the recently released “2025 Most Important Hardware Weaknesses,” 1 new AI weakness, usability improvements for 14 CWE entries including diagrams & more
cwe.mitre.org/news/archive...
cwe.mitre.org/news/archive...
September 10, 2025 at 12:03 PM
#CWE 4.18 is now available! This latest release includes 1 new view related to the recently released “2025 Most Important Hardware Weaknesses,” 1 new AI weakness, usability improvements for 14 CWE entries including diagrams & more
cwe.mitre.org/news/archive...
cwe.mitre.org/news/archive...
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 9/12/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)
Topic:
- CWE Gaps Identified in Most Important Hardware Weaknesses (MIHW) Analysis
Join #HW SIG: bit.ly/3SCkqyk
Topic:
- CWE Gaps Identified in Most Important Hardware Weaknesses (MIHW) Analysis
Join #HW SIG: bit.ly/3SCkqyk
CWE -
CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
September 9, 2025 at 1:46 PM
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 9/12/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)
Topic:
- CWE Gaps Identified in Most Important Hardware Weaknesses (MIHW) Analysis
Join #HW SIG: bit.ly/3SCkqyk
Topic:
- CWE Gaps Identified in Most Important Hardware Weaknesses (MIHW) Analysis
Join #HW SIG: bit.ly/3SCkqyk
The “2025 CWE Most Important Hardware Weaknesses”
cycuity.com/type/blog/th...
#cwe #cybersecurity #infosec #hardwaresecurity #hw #hardware
cycuity.com/type/blog/th...
#cwe #cybersecurity #infosec #hardwaresecurity #hw #hardware
The "2025 CWE Most Important Hardware Weaknesses”
Discover the 2025 most important hardware security weaknesses. Learn how to leverage this list to strengthen your security program.
cycuity.com
August 27, 2025 at 1:28 PM
The “2025 CWE Most Important Hardware Weaknesses”
cycuity.com/type/blog/th...
#cwe #cybersecurity #infosec #hardwaresecurity #hw #hardware
cycuity.com/type/blog/th...
#cwe #cybersecurity #infosec #hardwaresecurity #hw #hardware
"MITRE updates list of top hardware security blunders"
securityboulevard.com/2025/08/cybe...
#cwe #cybersecurity #infosec #hw #hardware
securityboulevard.com/2025/08/cybe...
#cwe #cybersecurity #infosec #hw #hardware
Cybersecurity Snapshot: Industrial Systems in Crosshairs of Russian Hackers, FBI Warns, as MITRE Updates List of Top Hardware Weaknesses
Check out the FBI’s alert on Russia-backed hackers infiltrating critical infrastructure networks via an old Cisco bug. Plus, MITRE dropped a revamped list of the most important critical security flaws...
securityboulevard.com
August 26, 2025 at 10:59 PM
"MITRE updates list of top hardware security blunders"
securityboulevard.com/2025/08/cybe...
#cwe #cybersecurity #infosec #hw #hardware
securityboulevard.com/2025/08/cybe...
#cwe #cybersecurity #infosec #hw #hardware
MITRE Updates List of Most Common Hardware Weaknesses
www.securityweek.com/mitre-update...
#cwe #cybersecurity #infosec #hw #hardware
www.securityweek.com/mitre-update...
#cwe #cybersecurity #infosec #hw #hardware
MITRE Updates List of Most Common Hardware Weaknesses
MITRE has updated the list of Most Important Hardware Weaknesses to align it with evolving hardware security challenges.
www.securityweek.com
August 26, 2025 at 10:24 PM
MITRE Updates List of Most Common Hardware Weaknesses
www.securityweek.com/mitre-update...
#cwe #cybersecurity #infosec #hw #hardware
www.securityweek.com/mitre-update...
#cwe #cybersecurity #infosec #hw #hardware
#CWE User Experience Working Group (UEWG) members — Reminder that our next meeting is tomorrow, Wednesday, 8/27/2025, at 12:00-1:00PM EDT
Topics:
- Weakness Remediation
- CWE Survey Updates
- Open Discussion
Join CWE UEWG: bit.ly/3CIylfz
Topics:
- Weakness Remediation
- CWE Survey Updates
- Open Discussion
Join CWE UEWG: bit.ly/3CIylfz
CWE -
CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
August 26, 2025 at 4:29 PM
#CWE User Experience Working Group (UEWG) members — Reminder that our next meeting is tomorrow, Wednesday, 8/27/2025, at 12:00-1:00PM EDT
Topics:
- Weakness Remediation
- CWE Survey Updates
- Open Discussion
Join CWE UEWG: bit.ly/3CIylfz
Topics:
- Weakness Remediation
- CWE Survey Updates
- Open Discussion
Join CWE UEWG: bit.ly/3CIylfz
The #CWE “2025 Most Important Hardware Weaknesses (MIHW)” has arrived!
See what’s included, check out the new methodology, and more!
#hardware #hw cwe.mitre.org/topHW/
See what’s included, check out the new methodology, and more!
#hardware #hw cwe.mitre.org/topHW/
August 20, 2025 at 4:16 PM
The #CWE “2025 Most Important Hardware Weaknesses (MIHW)” has arrived!
See what’s included, check out the new methodology, and more!
#hardware #hw cwe.mitre.org/topHW/
See what’s included, check out the new methodology, and more!
#hardware #hw cwe.mitre.org/topHW/
Check out this “We Speak CVE Podcast” about mapping the roots causes of CVEs to CWEs
youtu.be/3nNmrv4j1YE
#CWE #CVE #Vulnerability #VulnerabilityManagement #InformationSecurity #Cybersecurity
youtu.be/3nNmrv4j1YE
#CWE #CVE #Vulnerability #VulnerabilityManagement #InformationSecurity #Cybersecurity
Mapping the Root Causes of CVEs
YouTube video by CVE™ Program
youtu.be
August 7, 2025 at 10:04 PM
Check out this “We Speak CVE Podcast” about mapping the roots causes of CVEs to CWEs
youtu.be/3nNmrv4j1YE
#CWE #CVE #Vulnerability #VulnerabilityManagement #InformationSecurity #Cybersecurity
youtu.be/3nNmrv4j1YE
#CWE #CVE #Vulnerability #VulnerabilityManagement #InformationSecurity #Cybersecurity
#CWE User Experience Working Group (UEWG) members — Reminder that our next meeting is tomorrow, Wednesday, 7/30/2025, at 12:00-1:00PM EDT
Topics:
- CWE Survey Ideas?
- Open Discussion
Join CWE UEWG: bit.ly/3CIylfz
Topics:
- CWE Survey Ideas?
- Open Discussion
Join CWE UEWG: bit.ly/3CIylfz
CWE -
CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
July 29, 2025 at 2:27 PM
#CWE User Experience Working Group (UEWG) members — Reminder that our next meeting is tomorrow, Wednesday, 7/30/2025, at 12:00-1:00PM EDT
Topics:
- CWE Survey Ideas?
- Open Discussion
Join CWE UEWG: bit.ly/3CIylfz
Topics:
- CWE Survey Ideas?
- Open Discussion
Join CWE UEWG: bit.ly/3CIylfz
Listen to Alexander Bushkin & Jeremy West of #RedHat discuss “How Do We Leverage CVE Root Cause Mapping and CWE Data to Prevent New Vulnerabilities?” in this video from #VULNCON25
youtu.be/5bRA2Qxqzd0 #CVE #CWE
youtu.be/5bRA2Qxqzd0 #CVE #CWE
How Do We Leverage CVE Root Cause Mapping and CWE Data to Prevent New Vulnerabilities?
YouTube video by FIRST
youtu.be
July 16, 2025 at 10:06 PM
Listen to Alexander Bushkin & Jeremy West of #RedHat discuss “How Do We Leverage CVE Root Cause Mapping and CWE Data to Prevent New Vulnerabilities?” in this video from #VULNCON25
youtu.be/5bRA2Qxqzd0 #CVE #CWE
youtu.be/5bRA2Qxqzd0 #CVE #CWE
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 7/11/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)
Topic:
- HW Memory Weaknesses Working Session
Join #HW SIG: bit.ly/3SCkqyk
Topic:
- HW Memory Weaknesses Working Session
Join #HW SIG: bit.ly/3SCkqyk
CWE -
CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
July 8, 2025 at 4:30 PM
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 7/11/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)
Topic:
- HW Memory Weaknesses Working Session
Join #HW SIG: bit.ly/3SCkqyk
Topic:
- HW Memory Weaknesses Working Session
Join #HW SIG: bit.ly/3SCkqyk
Hear how the CVE Numbering Authority (#CNA) community is enhancing #CVE Records with Root Cause Mapping (RCM) of their CVEs to #CWEs, challenges & practical solutions, & how an LLM can help in this video from #VULNCON25
youtu.be/TH1tGO15K24
youtu.be/TH1tGO15K24
July 2, 2025 at 2:04 PM
Hear how the CVE Numbering Authority (#CNA) community is enhancing #CVE Records with Root Cause Mapping (RCM) of their CVEs to #CWEs, challenges & practical solutions, & how an LLM can help in this video from #VULNCON25
youtu.be/TH1tGO15K24
youtu.be/TH1tGO15K24
Learn about CWE’s most important problems and where they fit within the challenges faced by the broader #vulnerabilitymanagement / #softwaresecurity ecosystem in this video from #VULNCON25
youtu.be/RcR-EFSptnQ #CVE #CWE
youtu.be/RcR-EFSptnQ #CVE #CWE
June 19, 2025 at 2:32 PM
Learn about CWE’s most important problems and where they fit within the challenges faced by the broader #vulnerabilitymanagement / #softwaresecurity ecosystem in this video from #VULNCON25
youtu.be/RcR-EFSptnQ #CVE #CWE
youtu.be/RcR-EFSptnQ #CVE #CWE
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 6/13/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)
Topic:
- Continue discussion regarding Memory Access Related Weaknesses as they relate to hardware
Join HW SIG: bit.ly/3SCkqyk
Topic:
- Continue discussion regarding Memory Access Related Weaknesses as they relate to hardware
Join HW SIG: bit.ly/3SCkqyk
CWE -
CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
June 11, 2025 at 8:40 PM
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 6/13/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)
Topic:
- Continue discussion regarding Memory Access Related Weaknesses as they relate to hardware
Join HW SIG: bit.ly/3SCkqyk
Topic:
- Continue discussion regarding Memory Access Related Weaknesses as they relate to hardware
Join HW SIG: bit.ly/3SCkqyk
All of the videos from “VulnCon 2025” are now available on YouTube!
youtube.com/playlist?lis...
#CWE #CVE #FIRST #VulnerabilityManagement #Vulnerability #Cybersecurity #InformationSecurity
youtube.com/playlist?lis...
#CWE #CVE #FIRST #VulnerabilityManagement #Vulnerability #Cybersecurity #InformationSecurity
CVE/FIRST VulnCon 2025 - YouTube
The CVE Program and FIRST co-hosted “CVE/FIRST VulnCon 2025” at the McKimmon Center in Raleigh, North Carolina, USA, on April 7-10, 2025. The purpose of Vuln...
youtube.com
June 3, 2025 at 6:08 PM
All of the videos from “VulnCon 2025” are now available on YouTube!
youtube.com/playlist?lis...
#CWE #CVE #FIRST #VulnerabilityManagement #Vulnerability #Cybersecurity #InformationSecurity
youtube.com/playlist?lis...
#CWE #CVE #FIRST #VulnerabilityManagement #Vulnerability #Cybersecurity #InformationSecurity
#CWE User Experience Working Group (UEWG) members — Reminder that our next meeting is Wednesday, 5/28/2025, at 12:00-1:00PM EST
Topics:
- CWE and Proactive Vulnerability Management
- CWE Content Development Repository (CDR) Overview
- Open Discussion
About CWE UEWG: bit.ly/3CIylfz
Topics:
- CWE and Proactive Vulnerability Management
- CWE Content Development Repository (CDR) Overview
- Open Discussion
About CWE UEWG: bit.ly/3CIylfz
CWE -
CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
May 27, 2025 at 1:52 PM
#CWE User Experience Working Group (UEWG) members — Reminder that our next meeting is Wednesday, 5/28/2025, at 12:00-1:00PM EST
Topics:
- CWE and Proactive Vulnerability Management
- CWE Content Development Repository (CDR) Overview
- Open Discussion
About CWE UEWG: bit.ly/3CIylfz
Topics:
- CWE and Proactive Vulnerability Management
- CWE Content Development Repository (CDR) Overview
- Open Discussion
About CWE UEWG: bit.ly/3CIylfz
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 5/9/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)
Topic:
- Memory Access Weaknesses in HW discussion
- Most Important Hardware Weaknesses Working Group (MIHW WG) update
Join HW SIG: bit.ly/3SCkqyk
Topic:
- Memory Access Weaknesses in HW discussion
- Most Important Hardware Weaknesses Working Group (MIHW WG) update
Join HW SIG: bit.ly/3SCkqyk
CWE -
CWE Community WGs & SIGs
Common Weakness Enumeration (CWE) is a list of software and hardware weaknesses.
bit.ly
May 7, 2025 at 3:22 PM
Hardware #CWE SIG members—Reminder that our next meeting is Friday, 5/9/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)
Topic:
- Memory Access Weaknesses in HW discussion
- Most Important Hardware Weaknesses Working Group (MIHW WG) update
Join HW SIG: bit.ly/3SCkqyk
Topic:
- Memory Access Weaknesses in HW discussion
- Most Important Hardware Weaknesses Working Group (MIHW WG) update
Join HW SIG: bit.ly/3SCkqyk
Learn @ the #CWE Top 25, it’s value to defenders, & how #CVE CNAs help create the list; the purpose & benefits of mapping the root causes of vulnerabilities identified in CVE Records to CWE #weaknesses; Root Cause Mapping (RCM) tips; & much more!
www.youtube.com/watch?v=8pe6...
www.youtube.com/watch?v=8pe6...
Root Cause Mapping and the CWE Top 25
YouTube video by CWE Program
www.youtube.com
April 15, 2025 at 7:05 PM
Learn @ the #CWE Top 25, it’s value to defenders, & how #CVE CNAs help create the list; the purpose & benefits of mapping the root causes of vulnerabilities identified in CVE Records to CWE #weaknesses; Root Cause Mapping (RCM) tips; & much more!
www.youtube.com/watch?v=8pe6...
www.youtube.com/watch?v=8pe6...
Thank you so much to everyone who attended the #CWE talks at the #VulnCon25 conference!!!
We’re already looking forward to next year’s event!
#CVE #FIRST cwe.mitre.org
We’re already looking forward to next year’s event!
#CVE #FIRST cwe.mitre.org
April 15, 2025 at 3:35 PM
Thank you so much to everyone who attended the #CWE talks at the #VulnCon25 conference!!!
We’re already looking forward to next year’s event!
#CVE #FIRST cwe.mitre.org
We’re already looking forward to next year’s event!
#CVE #FIRST cwe.mitre.org
Hardware #CWE SIG members—Reminder that our next meeting is tomorrow, Friday, 4/11/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)
Topic:
- Most Important Hardware Weaknesses Working Group (MIHW WG) update
HW CWE SIG info: bit.ly/3SCkqyk
Topic:
- Most Important Hardware Weaknesses Working Group (MIHW WG) update
HW CWE SIG info: bit.ly/3SCkqyk
April 10, 2025 at 3:58 PM
Hardware #CWE SIG members—Reminder that our next meeting is tomorrow, Friday, 4/11/2025, at 12:30-1:30 PM EDT (16:30 – 17:30 UTC)
Topic:
- Most Important Hardware Weaknesses Working Group (MIHW WG) update
HW CWE SIG info: bit.ly/3SCkqyk
Topic:
- Most Important Hardware Weaknesses Working Group (MIHW WG) update
HW CWE SIG info: bit.ly/3SCkqyk
Day 4 of “CVE/FIRST VulnCon 2025”!
Today’s agenda for all 4 tracks:
first.org/conference/v...
#CWE #VulnerabilityManagement #Vulnerability #CVE #FIRST #VulnCon25
Today’s agenda for all 4 tracks:
first.org/conference/v...
#CWE #VulnerabilityManagement #Vulnerability #CVE #FIRST #VulnCon25
April 10, 2025 at 1:31 PM
Day 4 of “CVE/FIRST VulnCon 2025”!
Today’s agenda for all 4 tracks:
first.org/conference/v...
#CWE #VulnerabilityManagement #Vulnerability #CVE #FIRST #VulnCon25
Today’s agenda for all 4 tracks:
first.org/conference/v...
#CWE #VulnerabilityManagement #Vulnerability #CVE #FIRST #VulnCon25
Day 3 of “CVE/FIRST VulnCon 2025”!
Today’s agenda for all 3 tracks: first.org/conference/v...
#CWE #VulnerabilityManagement #Vulnerability #CVE #FIRST #VulnCon25
Today’s agenda for all 3 tracks: first.org/conference/v...
#CWE #VulnerabilityManagement #Vulnerability #CVE #FIRST #VulnCon25
April 9, 2025 at 1:36 PM
Day 3 of “CVE/FIRST VulnCon 2025”!
Today’s agenda for all 3 tracks: first.org/conference/v...
#CWE #VulnerabilityManagement #Vulnerability #CVE #FIRST #VulnCon25
Today’s agenda for all 3 tracks: first.org/conference/v...
#CWE #VulnerabilityManagement #Vulnerability #CVE #FIRST #VulnCon25
Want to know the top ten #CWEs in CISA’s “Known Exploited Vulnerabilities (#KEV) Catalog”?
The “2024 CWE Top 10 KEV Weaknesses” list is now available on the CWE website!
List - cwe.mitre.org/top25/archiv...
Key Insights - cwe.mitre.org/top25/archiv...
Methodology - cwe.mitre.org/top25/archiv...
The “2024 CWE Top 10 KEV Weaknesses” list is now available on the CWE website!
List - cwe.mitre.org/top25/archiv...
Key Insights - cwe.mitre.org/top25/archiv...
Methodology - cwe.mitre.org/top25/archiv...
April 9, 2025 at 1:35 PM
Want to know the top ten #CWEs in CISA’s “Known Exploited Vulnerabilities (#KEV) Catalog”?
The “2024 CWE Top 10 KEV Weaknesses” list is now available on the CWE website!
List - cwe.mitre.org/top25/archiv...
Key Insights - cwe.mitre.org/top25/archiv...
Methodology - cwe.mitre.org/top25/archiv...
The “2024 CWE Top 10 KEV Weaknesses” list is now available on the CWE website!
List - cwe.mitre.org/top25/archiv...
Key Insights - cwe.mitre.org/top25/archiv...
Methodology - cwe.mitre.org/top25/archiv...