| CWE |
Name |
|
Actions |
| CWE-1052 |
Excessive Use of Hard-Coded Literals in Initialization |
|
|
| CWE-1051 |
Initialization with Hard-Coded Network Resource Configuration Data |
|
|
| CWE-1050 |
Excessive Platform Resource Consumption within a Loop |
|
|
| CWE-105 |
Struts: Form Field Without Validator |
|
|
| CWE-1049 |
Excessive Data Query Operations in a Large Data Table |
|
|
| CWE-1048 |
Invokable Control Element with Large Number of Outward Calls |
|
|
| CWE-1047 |
Modules with Circular Dependencies |
|
|
| CWE-1046 |
Creation of Immutable Text Using String Concatenation |
|
|
| CWE-1045 |
Parent Class with a Virtual Destructor and a Child Class without a Virtual Destructor |
|
|
| CWE-1044 |
Architecture with Number of Horizontal Layers Outside of Expected Range |
|
|
| CWE-1043 |
Data Element Aggregating an Excessively Large Number of Non-Primitive Elements |
|
|
| CWE-1042 |
Static Member Data Element outside of a Singleton Class Element |
|
|
| CWE-1041 |
Use of Redundant Code |
|
|
| CWE-104 |
Struts: Form Bean Does Not Extend Validation Class |
|
|
| CWE-1039 |
Automated Recognition Mechanism with Inadequate Detection or Handling of Adversarial Input Perturbations |
|
|
| CWE-1038 |
Insecure Automated Optimizations |
|
|
| CWE-1037 |
Processor Optimization Removal or Modification of Security-critical Code |
|
|
| CWE-1036 |
OWASP Top Ten 2017 Category A10 - Insufficient Logging & Monitoring |
|
|
| CWE-1035 |
OWASP Top Ten 2017 Category A9 - Using Components with Known Vulnerabilities |
|
|
| CWE-1034 |
OWASP Top Ten 2017 Category A8 - Insecure Deserialization |
|
|
| CWE-1033 |
OWASP Top Ten 2017 Category A7 - Cross-Site Scripting (XSS) |
|
|
| CWE-1032 |
OWASP Top Ten 2017 Category A6 - Security Misconfiguration |
|
|
| CWE-1031 |
OWASP Top Ten 2017 Category A5 - Broken Access Control |
|
|
| CWE-1030 |
OWASP Top Ten 2017 Category A4 - XML External Entities (XXE) |
|
|
| CWE-103 |
Struts: Incomplete validate() Method Definition |
|
|
| CWE-1029 |
OWASP Top Ten 2017 Category A3 - Sensitive Data Exposure |
|
|
| CWE-1028 |
OWASP Top Ten 2017 Category A2 - Broken Authentication |
|
|
| CWE-1027 |
OWASP Top Ten 2017 Category A1 - Injection |
|
|
| CWE-1025 |
Comparison Using Wrong Factors |
|
|
| CWE-1024 |
Comparison of Incompatible Types |
|
|
| CWE-1023 |
Incomplete Comparison with Missing Factors |
|
|
| CWE-1022 |
Use of Web Link to Untrusted Target with window.opener Access |
|
|
| CWE-1021 |
Improper Restriction of Rendered UI Layers or Frames |
|
|
| CWE-1020 |
Verify Message Integrity |
|
|
| CWE-102 |
Struts: Duplicate Validation Forms |
|
|
| CWE-1019 |
Validate Inputs |
|
|
| CWE-1018 |
Manage User Sessions |
|
|
| CWE-1017 |
Lock Computer |
|
|
| CWE-1016 |
Limit Exposure |
|
|
| CWE-1015 |
Limit Access |
|
|