BaseDraft
CWE-223Omission of Security-relevant Information
Category: other
Description
The product does not record or display information that would be important for identifying the source or nature of an attack, or determining if an action is safe.
Common consequences· 1
- Non-Repudiation — Hide ActivitiesThe source of an attack will be difficult or impossible to determine. This can allow attacks to the system to continue without notice.
References
Compliance frameworks addressing this (incoming)2
| Type | Target | Confidence | Tier |
|---|---|---|---|
| ComplianceControl | ai_act-art12 | 100% | live |
| ComplianceControl | owasp_top10-a09 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.