VYPR

CWE-455

Non-exit on Failed Initialization

BaseDraft

Description

The product does not exit or otherwise modify its operation when security-relevant errors occur during initialization, such as when a configuration file has a format error or a hardware security module (HSM) cannot be activated, which can cause the product to execute in a less secure fashion than intended by the administrator.

Hierarchy (View 1000)

Children

none

CVEs mapped to this weakness (2)

  • CVE-2026-16584HigJul 23, 2026
    risk 0.39cvss 7.0epss 0.00

    Improper handling of an initialization failure in AWS API MCP Server from 0.2.13 through 1.3.46 might allow an actor to bypass the user-configured security policy and execute AWS API operations that the policy was set to deny or gate. When initialization of the security policy…

  • CVE-2022-4662MedDec 22, 2022
    risk 0.36cvss 5.5epss 0.00

    A flaw incorrect access control in the Linux kernel USB core subsystem was found in the way user attaches usb device. A local user could use this flaw to crash the system.