ClassIncomplete
CWE-943Improper Neutralization of Special Elements in Data Query Logic
Category: other
Description
The product generates a query intended to access or manipulate data in a data store such as a database, but it does not neutralize or incorrectly neutralizes special elements that can modify the intended logic of the query.
Common consequences· 1
- Confidentiality / Integrity / Availability / Access Control — Bypass Protection Mechanism, Read Application Data, Modify Application Data, Varies by Context
Related CAPEC attack patterns· 1
References
Exploits (incoming)1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| AttackPattern | NoSQL Injectioncapec-676 | 100% | live |
(incoming)12
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Vulnerability | CVE-2026-25513cve-2026-25513 | 0% | live |
| Vulnerability | CVE-2026-25514cve-2026-25514 | 0% | live |
| Vulnerability | CVE-2026-29793cve-2026-29793 | 0% | live |
| Vulnerability | CVE-2026-3023cve-2026-3023 | 0% | live |
| Vulnerability | CVE-2026-32247cve-2026-32247 | 0% | live |
| Vulnerability | CVE-2026-32248cve-2026-32248 | 0% | live |
| Vulnerability | CVE-2026-33980cve-2026-33980 | 0% | live |
| Vulnerability | CVE-2026-40351cve-2026-40351 | 0% | live |
| Vulnerability | CVE-2026-40352cve-2026-40352 | 0% | live |
| Vulnerability | CVE-2026-41274cve-2026-41274 | 0% | live |
| Vulnerability | CVE-2026-41327cve-2026-41327 | 0% | live |
| Vulnerability | CVE-2026-41328cve-2026-41328 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.