VYPR

CWE-1059

Insufficient Technical Documentation

ClassIncomplete

Description

The product does not contain sufficient technical or engineering documentation (whether on paper or in electronic form) that contains descriptions of all the relevant software/hardware elements of the product, such as its usage, structure, architectural components, interfaces, design, implementation, configuration, operation, etc.

Hierarchy (View 1000)

CVEs mapped to this weakness (3)

  • CVE-2022-3270CriDec 1, 2022
    risk 0.64cvss 9.8epss 0.01

    In multiple products by Festo a remote unauthenticated attacker could use functions of an undocumented protocol which could lead to a complete loss of confidentiality, integrity and availability.

  • CVE-2026-48035HigJul 24, 2026
    risk 0.39cvss epss 0.00

    Hulumi is an open-source toolkit that ships secure-by-default cloud and platform infrastructure components for Pulumi. Prior to version 1.4.0, consumers using AccountFoundation could ship an AWS account whose CloudTrail / Config audit logs were deletable by any S3-delete-capable…

  • CVE-2026-59084CriJul 14, 2026
    risk 0.00cvss 9.1epss 0.01

    Insufficient Technical Documentation vulnerability in Apache Tomcat since the requirements to securely configure the EncryptInterceptor were not clearly documented. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.23, from 10.1.0-M1 through 10.1.56, from 9.0.13…