|
Category ID: 1443
Vulnerability Mapping:
PROHIBITED
This CWE ID must not be used to map to real-world vulnerabilities
|
| Nature | Type | ID | Name |
|---|---|---|---|
| MemberOf | 1450 | Weaknesses in OWASP Top Ten RC1 (2025) | |
| HasMember | 345 | Insufficient Verification of Data Authenticity | |
| HasMember | 353 | Missing Support for Integrity Check | |
| HasMember | 426 | Untrusted Search Path | |
| HasMember | 427 | Uncontrolled Search Path Element | |
| HasMember | 494 | Download of Code Without Integrity Check | |
| HasMember | 502 | Deserialization of Untrusted Data | |
| HasMember | 506 | Embedded Malicious Code | |
| HasMember | 509 | Replicating Malicious Code (Virus or Worm) | |
| HasMember | 565 | Reliance on Cookies without Validation and Integrity Checking | |
| HasMember | 784 | Reliance on Cookies without Validation and Integrity Checking in a Security Decision | |
| HasMember | 829 | Inclusion of Functionality from Untrusted Control Sphere | |
| HasMember | 830 | Inclusion of Web Functionality from an Untrusted Source | |
| HasMember | 915 | Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| HasMember | 926 | Improper Export of Android Application Components |
|
Usage: PROHIBITED
(this CWE ID must not be used to map to real-world vulnerabilities)
|
|
Reason: Category |
|
Rationale: This entry is a Category. Using categories for mapping has been discouraged since 2019. Categories are informal organizational groupings of weaknesses that can help CWE users with data aggregation, navigation, and browsing. However, they are not weaknesses in themselves. |
|
Comments: See member weaknesses of this category. |
Maintenance
|
[REF-1500] "OWASP Top 10:2025 RC1". OWASP. 2025-11-06.
<https://owasp.org/Top10/2025/0x00_2025-Introduction/>.
URL validated: 2025-12-01.
|
|
[REF-1508] OWASP. "A08:2025 - Software or Data Integrity Failures". 2025-11-06.
<https://owasp.org/Top10/2025/A08_2025-Software_or_Data_Integrity_Failures/>.
URL validated: 2025-12-01.
|
|
Use of the Common Weakness Enumeration (CWE™) and the associated references from this website are subject to the Terms of Use. CWE is sponsored by the U.S. Department of Homeland Security (DHS) Cybersecurity and Infrastructure Security Agency (CISA) and managed by the Homeland Security Systems Engineering and Development Institute (HSSEDI) which is operated by The MITRE Corporation (MITRE). Copyright © 2006–2026, The MITRE Corporation. CWE, CWSS, CWRAF, and the CWE logo are trademarks of The MITRE Corporation. |
||

