Back
Total Entities
Active This Week
New This Week
Avg Threat Score
Trending (7 Days)
Threat Score Distribution
Most Reported (by source diversity)
New vs Returning

Browse 66 cwe entities tracked by ThreatCluster.

Cwe (66 total)

CWE-200 - Exposure of Sensitive Information · 0CWE-287 - Improper Authentication · 0CWE-269 - Improper Privilege Management · 0CWE-78 - OS Command Injection · 0CWE-862 - Missing Authorization · 0Cwe-79 - Cross-site Scripting (xss) · 0CWE-94 - Code Injection · 0CWE-22 - Path Traversal · 0Cwe-89 - SQL Injection · 0CWE-798 - Use of Hard-coded Credentials · 0Cwe-416 - Use After Free · 0CWE-120 - Classic Buffer Overflow · 0Cwe-122 - Heap-based Buffer Overflow · 0Cwe-125 - Out-of-bounds Read · 0Cwe-787 - Out-of-bounds Write · 0Cwe-190 - Integer Overflow Or Wraparound · 0Cwe-502 - Deserialization Of Untrusted Data · 0Cwe-400 - Uncontrolled Resource Consumption · 0Cwe-362 - Race Condition · 0Cwe-918 - Server-Side Request Forgery (ssrf) · 0CWE-20 - Improper Input Validation · 0Cwe-476 - NULL Pointer Dereference · 0Cwe-843 - Type Confusion · 0Cwe-434 - Unrestricted Upload Of File With Dangerous Type · 0Cwe-352 - Cross-Site Request Forgery (csrf) · 0Cwe-119 - Improper Restriction Of Operations Within Memory Buffer · 0Cwe-601 - Open Redirect · 0Cwe-295 - Improper Certificate Validation · 0Cwe-306 - Missing Authentication For Critical Function · 0Cwe-415 - Double Free · 0Cwe-611 - Improper Restriction Of XML External Entity Reference (xxe) · 0CWE-77 - Command Injection · 0Cwe-327 - Use Of A Broken Or Risky Cryptographic Algorithm · 0Cwe-191 - Integer Underflow · 0CWE-347 - Improper Verification of Cryptographic Signature · 0Cwe-426 - Untrusted Search Path · 0Cwe-59 - Improper Link Resolution Before File Access · 0CWE-639 - Authorization Bypass Through User-Controlled Key (IDOR) · 0Cwe-131 - Incorrect Calculation Of Buffer Size · 0Cwe-134 - Use Of Externally-Controlled Format String · 0Cwe-193 - Off-by-one Error · 0Cwe-319 - Cleartext Transmission Of Sensitive Information · 0Cwe-427 - Uncontrolled Search Path Element · 0CWE-88 - Argument Injection · 0Cwe-252 - Unchecked Return Value · 0CWE-312 - Cleartext Storage of Sensitive Information · 0Cwe-326 - Inadequate Encryption Strength · 0CWE-401 - Missing Release of Memory after Effective Lifetime · 0Cwe-521 - Weak Password Requirements · 0CWE-908 - Use of Uninitialized Resource · 0CWE-116 - Improper Encoding or Escaping of Output · 0CWE-129 - Improper Validation of Array Index · 0CWE-1321 - Prototype Pollution · 0CWE-276 - Incorrect Default Permissions · 0CWE-311 - Missing Encryption of Sensitive Data · 0CWE-330 - Use of Insufficiently Random Values · 0CWE-331 - Insufficient Entropy · 0CWE-338 - Use of Cryptographically Weak PRNG · 0CWE-345 - Insufficient Verification of Data Authenticity · 0CWE-367 - TOCTOU Race Condition · 0CWE-369 - Divide By Zero · 0CWE-407 - Inefficient Algorithmic Complexity · 0CWE-522 - Insufficiently Protected Credentials · 0CWE-613 - Insufficient Session Expiration · 0CWE-681 - Incorrect Conversion between Numeric Types · 0CWE-732 - Incorrect Permission Assignment for Critical Resource · 0