BaseDraft

CWE-394Unexpected Status Code or Return Value

Category: other

Description

The product does not properly check when a function or operation returns a value that is legitimate for the function, but is not expected by the product.

Common consequences· 1

  • Integrity / Other — Unexpected State, Alter Execution Logic

References

  1. https://cwe.mitre.org/data/definitions/394.html

(incoming)3

TypeTargetConfidenceTier
VulnerabilityCVE-2025-12515cve-2025-125150%live
VulnerabilityCVE-2025-12516cve-2025-125160%live
VulnerabilityCVE-2026-25085cve-2026-250850%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CWE
Incorrect Check of Function Return Value
CWE
Return of Wrong Status Code
CWE
Improper Handling of Undefined Values
CWE
Expected Behavior Violation
CWE
Missing Report of Error Condition
CWE
Insufficient Verification of Data Authenticity
Sourced from MITRE CWE 4.20. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.