Categories (CWE)

Search

Categories (CWE)

CWE Name Actions
CWE-1052 Excessive Use of Hard-Coded Literals in Initialization
CWE-1051 Initialization with Hard-Coded Network Resource Configuration Data
CWE-1050 Excessive Platform Resource Consumption within a Loop
CWE-105 Struts: Form Field Without Validator
CWE-1049 Excessive Data Query Operations in a Large Data Table
CWE-1048 Invokable Control Element with Large Number of Outward Calls
CWE-1047 Modules with Circular Dependencies
CWE-1046 Creation of Immutable Text Using String Concatenation
CWE-1045 Parent Class with a Virtual Destructor and a Child Class without a Virtual Destructor
CWE-1044 Architecture with Number of Horizontal Layers Outside of Expected Range
CWE-1043 Data Element Aggregating an Excessively Large Number of Non-Primitive Elements
CWE-1042 Static Member Data Element outside of a Singleton Class Element
CWE-1041 Use of Redundant Code
CWE-104 Struts: Form Bean Does Not Extend Validation Class
CWE-1039 Automated Recognition Mechanism with Inadequate Detection or Handling of Adversarial Input Perturbations
CWE-1038 Insecure Automated Optimizations
CWE-1037 Processor Optimization Removal or Modification of Security-critical Code
CWE-1036 OWASP Top Ten 2017 Category A10 - Insufficient Logging & Monitoring
CWE-1035 OWASP Top Ten 2017 Category A9 - Using Components with Known Vulnerabilities
CWE-1034 OWASP Top Ten 2017 Category A8 - Insecure Deserialization
CWE-1033 OWASP Top Ten 2017 Category A7 - Cross-Site Scripting (XSS)
CWE-1032 OWASP Top Ten 2017 Category A6 - Security Misconfiguration
CWE-1031 OWASP Top Ten 2017 Category A5 - Broken Access Control
CWE-1030 OWASP Top Ten 2017 Category A4 - XML External Entities (XXE)
CWE-103 Struts: Incomplete validate() Method Definition
CWE-1029 OWASP Top Ten 2017 Category A3 - Sensitive Data Exposure
CWE-1028 OWASP Top Ten 2017 Category A2 - Broken Authentication
CWE-1027 OWASP Top Ten 2017 Category A1 - Injection
CWE-1025 Comparison Using Wrong Factors
CWE-1024 Comparison of Incompatible Types
CWE-1023 Incomplete Comparison with Missing Factors
CWE-1022 Use of Web Link to Untrusted Target with window.opener Access
CWE-1021 Improper Restriction of Rendered UI Layers or Frames
CWE-1020 Verify Message Integrity
CWE-102 Struts: Duplicate Validation Forms
CWE-1019 Validate Inputs
CWE-1018 Manage User Sessions
CWE-1017 Lock Computer
CWE-1016 Limit Exposure
CWE-1015 Limit Access