CWE Program

@CWE_Program
86 Followers
54 Following
117 Posts
Account maintained by the Common Weakness Enumeration (CWE™) Program to update the community on CWE--related announcements.
https://cwe.mitre.org
Websitehttps://cwe.mitre.org

Check out the #CWE talks in the agenda for “CVE/FIRST VulnCon 2026” on April 13-16, 2026!
https://www.first.org/conference/vulncon26/program

Virtual & In-person registration available. Register today!

#cve #first #vulnerability #infosec #cybersecurity

Want to know the top ten #CWEs in CISA’s “Known Exploited Vulnerabilities (#KEV) Catalog”?

The “2025 CWE Top 10 KEV Weaknesses” list is now available on the CWE website!

List - https://cwe.mitre.org/top25/archive/2025/2025_kev_list.html
Key Insights - https://cwe.mitre.org/top25/archive/2025/2025_kev_insights.html
Methodology - https://cwe.mitre.org/top25/archive/2025/2025_kev_methodology.html

#CWE 4.19 is now available! This latest release includes 1 new view to support the release of the “2021 CWE Top 25 Most Dangerous Software Weaknesses,” 1 new view for the “OWASP Top Ten 2025,” + continued CWE content usability improvements

https://cwe.mitre.org/news/archives/news2025.html#december11_CWE_Version_4_19_Now_Available
The 2025 #CWE Top 25 Most Dangerous #Software Weaknesses list is now available!

See the the most severe and prevalent weaknesses behind the 39,080 #CVE Records in this year’s dataset. Take a look and share your thoughts!

https://cwe.mitre.org/top25/
#CWE 4.18 is now available! This latest release includes 1 new view related to the recently released “2025 Most Important Hardware Weaknesses,” 1 new AI weakness, usability improvements for 14 CWE entries including diagrams & more

https://cwe.mitre.org/news/archives/news2025.html#september09_CWE_Version_4_18_Now_Available

The #CWE “2025 Most Important Hardware Weaknesses (MIHW)” has arrived!

See what’s included, check out the new methodology, and more!

#hardware #hw https://cwe.mitre.org/topHW/

Check out this “We Speak CVE Podcast” focused on mapping the roots causes of CVEs to CWEs + the benefits for CVE Numbering Authorities (CNAs) & consumers of CVE data + the tools and guidance available to improve the root cause mapping (RCM) process for CNAs including examples of mappings, best practices docs, mapping usage labels on CWE entry pages, the RCM WG, & an LLM tool + more

https://youtu.be/3nNmrv4j1YE

#CWE #CVE #Vulnerability #Cybersecurity #VulnerabilityManagement
Listen to Alexander Bushkin & Jeremy West of #RedHat discuss “How Do We Leverage CVE Root Cause Mapping and CWE Data to Prevent New Vulnerabilities?” in this video from #VULNCON25

https://youtu.be/5bRA2Qxqzd0 #CVE #CWE
Hear how the CVE Numbering Authority (#CNA) community is enhancing #CVE Records with Root Cause Mapping (RCM) of their CVEs to #CWEs, RCM challenges & practical solutions, & how an LLM can help in this video from #VULNCON25

https://youtu.be/TH1tGO15K24