VYPR

CWE-791

Incomplete Filtering of Special Elements

BaseIncomplete

Description

The product receives data from an upstream component, but does not completely filter special elements before sending it to a downstream component.

Hierarchy (View 1000)

Parents

CVEs mapped to this weakness (42)

page 3 of 3
  • CVE-2025-3841LowApr 21, 2025
    risk 0.21cvss 3.3epss 0.00

    A vulnerability, which was classified as problematic, was found in wix-incubator jam up to e87a6fd85cf8fb5ff37b62b2d68f917219d07ae9. This affects an unknown part of the file jam.py of the component Jinja2 Template Handler. The manipulation of the argument config['template']…

  • CVE-2023-1076MedMar 27, 2023
    risk 0.00cvss 5.5epss 0.00

    A flaw was found in the Linux Kernel. The tun/tap sockets have their socket UID hardcoded to 0 due to a type confusion in their initialization function. While it will be often correct, as tuntap devices require CAP_NET_ADMIN, it may not always be the case, e.g., a non-root user…