CWE-228
Improper Handling of Syntactically Invalid Structure
ClassIncomplete
Description
The product does not handle or incorrectly handles input that is not syntactically well-formed with respect to the associated specification.
Hierarchy (View 1000)
CVEs mapped to this weakness (22)
page 2 of 2| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-2529 | Low | 0.19 | 2.9 | 0.00 | Oct 15, 2025 | Applications using affected versions of Ehcache 3.x can experience degraded cache-write performance if the application using Ehcache utilizes keys sourced from (malicious) external parties in an unfiltered/unsalted way. | ||
| CVE-2025-47736 | Low | 0.19 | 2.9 | 0.00 | May 9, 2025 | dialect/mod.rs in the libsql-sqlite3-parser crate through 0.13.0 before 14f422a for Rust can crash if the input is not valid UTF-8. |
- risk 0.19cvss 2.9epss 0.00
Applications using affected versions of Ehcache 3.x can experience degraded cache-write performance if the application using Ehcache utilizes keys sourced from (malicious) external parties in an unfiltered/unsalted way.
- risk 0.19cvss 2.9epss 0.00
dialect/mod.rs in the libsql-sqlite3-parser crate through 0.13.0 before 14f422a for Rust can crash if the input is not valid UTF-8.