ClassDraft

CWE-684Incorrect Provision of Specified Functionality

Category: other

Description

The code does not function according to its published specifications, potentially leading to incorrect usage. When providing functionality to an external party, it is important that the product behaves in accordance with the details specified. When requirements of nuances are not documented, the functionality may produce unintended behaviors for the caller, possibly leading to an exploitable state.

Common consequences· 1

  • Other — Quality Degradation

Potential mitigations· 1

  • [Implementation]Ensure that your code strictly conforms to specifications.

References

  1. https://cwe.mitre.org/data/definitions/684.html

(incoming)3

TypeTargetConfidenceTier
VulnerabilityCVE-2025-66384cve-2025-663840%live
VulnerabilityCVE-2026-40685cve-2026-406850%live
VulnerabilityCVE-2026-44597cve-2026-445970%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CWE
Improper Following of Specification by Caller
CWE
Use of Potentially Dangerous Function
CWE
Incorrect Use of Privileged APIs
CWE
Reliance on Undefined, Unspecified, or Implementation-Defined Behavior
CWE
Exposed Dangerous Method or Function
CWE
Expected Behavior Violation
Sourced from MITRE CWE 4.20. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.