Skip to main content

CWEs that violate the CERT standard

The following table lists all the CWEs that might cause an application to not pass a policy that includes a CERT policy rule.

CWE IDCWE nameSAST supportDAST supportVeracode severity
14Compiler Removal of Code to Clear BuffersNoNoN/A
20Improper Input ValidationYesNo0 - Informational
22Improper Limitation of a Pathname to a Restricted Directory (Path Traversal)YesYes3 - Medium
37Path Traversal: '/absolute/pathname/here'NoNoN/A
38Path Traversal: '\absolute\pathname\here'NoNoN/A
39Path Traversal: 'C:dirname'NoNoN/A
41Improper Resolution of Path EquivalenceNoNoN/A
59Improper Link Resolution Before File Access (Link Following)NoNoN/A
62UNIX Hard LinkNoNoN/A
64Windows Shortcut Following (.LNK)NoNoN/A
65Windows Hard LinkNoNoN/A
67Improper Handling of Windows Device NamesNoNoN/A
78Improper Neutralization of Special Elements used in an OS Command (OS Command Injection)YesYes5 - Very High (Critical)
88Argument Injection or ModificationYesNo3 - Medium
111Direct Use of Unsafe JNIYesNo4 - High
116Improper Encoding or Escaping of OutputNoNoN/A
117Improper Output Neutralization for LogsYesNo3 - Medium
119Improper Restriction of Operations within the Bounds of a Memory BufferNoNoN/A
120Buffer Copy without Checking Size of Input (Classic Buffer Overflow)NoNoN/A
121Stack-based Buffer OverflowYesNo5 - Very High (Critical)
122Heap-based Buffer OverflowNoNoN/A
123Write-what-where ConditionNoNoN/A
125Out-of-bounds ReadYesNo3 - Medium
128Wrap-around ErrorNoNoN/A
129Improper Validation of Array IndexYesNo3 - Medium
131Incorrect Calculation of Buffer SizeNoNoN/A
134Use of Externally-Controlled Format StringYesNo5 - Very High (Critical)
135Incorrect Calculation of Multi-Byte String LengthYesNo5 - Very High (Critical)
144Improper Neutralization of Line DelimitersNoNoN/A
150Improper Neutralization of Escape, Meta, or Control SequencesNoNoN/A
170Improper Null TerminationYesNo3 - Medium
171Cleansing, Canonicalization, and Comparison ErrorsNoNoN/A
176Improper Handling of Unicode EncodingNoNoN/A
180Incorrect Behavior Order: Validate Before CanonicalizeNoNoN/A
182Collapse of Data into Unsafe ValueNoNoN/A
190Integer Overflow or WraparoundYesNo5 - Very High (Critical)
191Integer Underflow (Wrap or Wraparound)YesNo3 - Medium
192Integer Coercion ErrorYesNo3 - Medium
193Off-by-one ErrorYesNo3 - Medium
194Unexpected Sign ExtensionNoNoN/A
195Signed to Unsigned Conversion ErrorYesNo3 - Medium
197Numeric Truncation ErrorYesNo3 - Medium
198Use of Incorrect Byte OrderingNoNoN/A
209Information Exposure Through an Error MessageYesYes2 - Low
226Sensitive Information Uncleared Before ReleaseNoNoN/A
2277PK - API AbuseNoNoN/A
230Improper Handling of Missing ValuesNoNoN/A
232Improper Handling of Undefined ValuesNoNoN/A
241Improper Handling of Unexpected Data TypeNoNoN/A
242Use of Inherently Dangerous FunctionYesNo5 - Very High (Critical)
244Improper Clearing of Heap Memory Before Release (Heap Inspection)NoNoN/A
248Uncaught ExceptionYesNo2 - Low
250Execution with Unnecessary PrivilegesNoNoN/A
252Unchecked Return ValueYesNo2 - Low
253Incorrect Check of Function Return ValueNoNoN/A
259Use of Hard-coded PasswordYesYes3 - Medium
266Incorrect Privilege AssignmentNoNoN/A
272Least Privilege ViolationYesNo3 - Medium
273Improper Check for Dropped PrivilegesYesNo3 - Medium
276Incorrect Default PermissionsNoNoN/A
279Incorrect Execution-Assigned PermissionsNoNoN/A
289Authentication Bypass by Alternate NameNoNoN/A
300Channel Accessible by Non-Endpoint (Man-in-the-Middle)NoNoN/A
302Authentication Bypass by Assumed-Immutable DataNoNoN/A
311Missing Encryption of Sensitive DataYesNo3 - Medium
319Cleartext Transmission of Sensitive InformationYesNo3 - Medium
327Use of a Broken or Risky Cryptographic AlgorithmYesYes3 - Medium
330Use of Insufficiently Random ValuesYesNo3 - Medium
331Insufficient EntropyYesNo3 - Medium
332Insufficient Entropy in PRNGNoNoN/A
333Improper Handling of Insufficient Entropy in TRNGNoNoN/A
336Same Seed in Pseudo-Random Number Generator (PRNG)NoNoN/A
337Predictable Seed in Pseudo-Random Number Generator (PRNG)NoNoN/A
338Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)YesNo3 - Medium
347Improper Verification of Cryptographic SignatureYesNo2 - Low
349Acceptance of Extraneous Untrusted Data With Trusted DataNoNoN/A
359Exposure of Private Information (Privacy Violation)YesYes2 - Low
362Concurrent Execution using Shared Resource with Improper Synchronization (Race Condition)NoNoN/A
363Race Condition Enabling Link FollowingNoNoN/A
366Race Condition within a ThreadYesNo3 - Medium
367Time-of-check Time-of-use (TOCTOU) Race ConditionYesNo3 - Medium
369Divide By ZeroNoNoN/A
374Passing Mutable Objects to an Untrusted MethodNoNoN/A
375Returning a Mutable Object to an Untrusted CallerNoNoN/A
377Insecure Temporary FileYesNo3 - Medium
379Creation of Temporary File in Directory with Incorrect PermissionsNoNoN/A
382J2EE Bad Practices: Use of System.exit()YesNo2 - Low
390Detection of Error Condition Without ActionNoNoN/A
392Missing Report of Error ConditionNoNoN/A
395Use of NullPointerException Catch to Detect NULL Pointer DereferenceNoNoN/A
397Declaration of Throws for Generic ExceptionNoNoN/A
400Uncontrolled Resource ConsumptionNoNoN/A
401Improper Release of Memory Before Removing Last ReferenceYesNo2 - Low
403Exposure of File Descriptor to Unintended Control Sphere (File Descriptor Leak)NoNoN/A
404Improper Resource Shutdown or ReleaseYesNo0 - Informational
405Asymmetric Resource Consumption (Amplification)NoNoN/A
409Improper Handling of Highly Compressed Data (Data Amplification)NoNoN/A
410Insufficient Resource PoolNoNoN/A
412Unrestricted Externally Accessible LockNoNoN/A
413Improper Resource LockingNoNoN/A
415Double FreeYesNo3 - Medium
416Use After FreeYesNo2 - Low
426Untrusted Search PathYesNo3 - Medium
456Missing Initialization of a VariableNoNoN/A
459Incomplete CleanupNoNoN/A
460Improper Cleanup on Thrown ExceptionNoNoN/A
462Duplicate Key in Associative List (Alist)NoNoN/A
464Addition of Data Structure SentinelNoNoN/A
466Return of Pointer Value Outside of Expected RangeNoNoN/A
467Use of sizeof() on a Pointer TypeNoNoN/A
468Incorrect Pointer ScalingNoNoN/A
469Use of Pointer Subtraction to Determine SizeNoNoN/A
470Use of Externally-Controlled Input to Select Classes or Code (Unsafe Reflection)YesNo3 - Medium
476NULL Pointer DereferenceNoNoN/A
479Signal Handler Use of a Non-reentrant FunctionYesNo3 - Medium
480Use of Incorrect OperatorNoNoN/A
481Assigning instead of ComparingNoNoN/A
482Comparing instead of AssigningNoNoN/A
486Comparison of Classes by NameNoNoN/A
487Reliance on Package-level ScopeNoNoN/A
491Public cloneable() Method Without Final (Object Hijack)NoNoN/A
492Use of Inner Class Containing Sensitive DataNoNoN/A
493Critical Public Variable Without Final ModifierNoNoN/A
497Exposure of System Data to an Unauthorized Control SphereYesNo2 - Low
499Serializable Class Containing Sensitive DataNoNoN/A
500Public Static Field Not Marked FinalNoNoN/A
502Deserialization of Untrusted DataYesNo3 - Medium
528Exposure of Core Dump File to an Unauthorized Control SphereNoNoN/A
532Insertion of Sensitive Information into Log FileYesNo2 - Low
543Use of Singleton Pattern Without Synchronization in a Multithreaded ContextNoNoN/A
544Missing Standardized Error Handling MechanismNoNoN/A
547Use of Hard-coded, Security-relevant ConstantsYesNo3 - Medium
552Files or Directories Accessible to External PartiesNoNoN/A
561Dead CodeNoNoN/A
562Return of Stack Variable AddressNoNoN/A
563Assignment to Variable without UseNoNoN/A
567Unsynchronized Access to Shared Data in a Multithreaded ContextNoNoN/A
568finalize() Method Without super.finalize()NoNoN/A
570Expression is Always FalseNoNoN/A
571Expression is Always TrueNoNoN/A
572Call to Thread run() instead of start()NoNoN/A
573Improper Following of Specification by CallerNoNoN/A
581Object Model Violation: Just One of Equals and Hashcode DefinedNoNoN/A
582Array Declared Public, Final, and StaticNoNoN/A
583finalize() Method Declared PublicNoNoN/A
584Return Inside Finally BlockNoNoN/A
586Explicit Call to Finalize()NoNoN/A
587Assignment of a Fixed Address to a PointerNoNoN/A
589Call to Non-ubiquitous APINoNoN/A
590Free of Memory not on the HeapNoNoN/A
591Sensitive Data Storage in Improperly Locked MemoryNoNoN/A
595Comparison of Object References Instead of Object ContentsNoNoN/A
597Use of Wrong Operator in String ComparisonYesNo2 - Low
600Uncaught Exception in ServletNoNoN/A
606Unchecked Input for Loop ConditionNoNoN/A
609Double-Checked LockingNoNoN/A
617Reachable AssertionNoNoN/A
625Permissive Regular ExpressionNoNoN/A
628Function Call with Incorrectly Specified ArgumentsYesNo2 - Low
647Use of Non-Canonical URL Paths for Authorization DecisionsNoNoN/A
662Improper SynchronizationNoNoN/A
664Improper Control of a Resource Through its LifetimeNoNoN/A
665Improper InitializationYesNo2 - Low
666Operation on Resource in Wrong Phase of LifetimeNoNoN/A
667Improper LockingNoNoN/A
672Operation on a Resource after Expiration or ReleaseNoNoN/A
675Duplicate Operations on ResourceYesNo2 - Low
676Use of Potentially Dangerous FunctionYesNo3 - Medium
680Integer Overflow to Buffer OverflowNoNoN/A
681Incorrect Conversion between Numeric TypesNoNoN/A
682Incorrect CalculationNoNoN/A
684Incorrect Provision of Specified FunctionalityNoNoN/A
685Function Call With Incorrect Number of ArgumentsNoNoN/A
686Function Call With Incorrect Argument TypeNoNoN/A
687Function Call With Incorrectly Specified Argument ValueNoNoN/A
690Unchecked Return Value to NULL Pointer DereferenceNoNoN/A
696Incorrect Behavior OrderNoNoN/A
697Incorrect ComparisonNoNoN/A
703Improper Check or Handling of Exceptional ConditionsNoNoN/A
704Incorrect Type Conversion or CastNoNoN/A
705Incorrect Control Flow ScopingNoNoN/A
732Incorrect Permission Assignment for Critical ResourceYesNo3 - Medium
754Improper Check for Unusual or Exceptional ConditionsNoNoN/A
758Reliance on Undefined, Unspecified, or Implementation-Defined BehaviorNoNoN/A
762Mismatched Memory Management RoutinesNoNoN/A
766Critical Data Element Declared PublicNoNoN/A
770Allocation of Resources Without Limits or ThrottlingNoNoN/A
771Missing Reference to Active Allocated ResourceNoNoN/A
772Missing Release of Resource after Effective LifetimeNoNoN/A
773Missing Reference to Active File Descriptor or HandleNoNoN/A
775Missing Release of File Descriptor or Handle after Effective LifetimeNoNoN/A
783Operator Precedence Logic ErrorNoNoN/A
786Access of Memory Location Before Start of BufferNoNoN/A
789Uncontrolled Memory AllocationNoNoN/A
798Use of Hard-coded CredentialsYesNo3 - Medium
805Buffer Access with Incorrect Length ValueNoNoN/A
807Reliance on Untrusted Inputs in a Security DecisionNoNoN/A
820Missing SynchronizationNoNoN/A
833DeadlockNoNoN/A
838Inappropriate Encoding for Output ContextNoNoN/A
843Access of Resource Using Incompatible Type (Type Confusion)NoNoN/A
908Use of Uninitialized ResourceNoNoN/A
910Use of Expired File DescriptorNoNoN/A