BaseIncomplete
CWE-1104Use of Unmaintained Third Party Components
Category: other
Description
The product relies on third-party components that are not
actively supported or maintained by the original developer or a trusted proxy
for the original developer.
Common consequences· 1
- Other — Reduce Maintainability, Varies by ContextRelying on unmaintained components makes it difficult or impossible to fix significant bugs and vulnerabilities, can render code obsolete, and undermine security by complicating maintenance and increasing the risk of new vulnerabilities.
References
Compliance frameworks addressing this (incoming)3
| Type | Target | Confidence | Tier |
|---|---|---|---|
| ComplianceControl | cra-annexi-3 | 100% | live |
| ComplianceControl | owasp_top10-a06 | 100% | live |
| ComplianceControl | dora-art28 | 100% | live |
(incoming)8
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Vulnerability | CVE-2025-10220cve-2025-10220 | 0% | live |
| Vulnerability | CVE-2025-12104cve-2025-12104 | 0% | live |
| Vulnerability | CVE-2025-34192cve-2025-34192 | 0% | live |
| Vulnerability | CVE-2025-34193cve-2025-34193 | 0% | live |
| Vulnerability | CVE-2025-3497cve-2025-3497 | 0% | live |
| Vulnerability | CVE-2025-40906cve-2025-40906 | 0% | live |
| Vulnerability | CVE-2026-21821cve-2026-21821 | 0% | live |
| Vulnerability | CVE-2026-41468cve-2026-41468 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.