SEARCHSearch the cs-graph

CVE-#### · MITRE T#### · CWE-#### · ATLAS AML.T#### · D3-XX · compliance article references. Authored by Adam Lundqvist.

50 results for “cwe-189” · 1.08 s · cached

Facets · 3 entity types

33 CVE13 CWE4 CAPEC
CWE-1187CWE

DEPRECATED: Use of Uninitialized Resource

This entry has been deprecated because it was a duplicate of CWE-908. All content has been transferred to CWE-908.

Match for cwe-189
CVE-2026-11183CVE

CVE-2026-11183

Out of bounds read in GWP-ASan in Google Chrome prior to 149.0.7827.53 allowed a local attacker to obtain potentially sensitive information from process memory via a malicious file. (Chromium securit…

CVSS 6.5EPSS 0.2%google
Match for cwe-189
CWE-592CWE

DEPRECATED: Authentication Bypass Issues

This weakness has been deprecated because it covered redundant concepts already described in CWE-287.

Match for cwe-189
CVE-2025-23180CVE

CVE-2025-23180

CWE-250: Execution with Unnecessary Privileges

CVSS 8.0EPSS 0.3%
Match for cwe-189
CAPEC-191CAPEC

Read Sensitive Constants Within an Executable

Metadata: detailed CAPEC pattern, status draft, severity low. Underlying weakness: CWE-798. Mapped ATT&CK technique: [object Object]. Related CAPEC pattern: [object Object].

Detailed
Match for cwe-189
CWE-225CWE

DEPRECATED: General Information Management Problems

This weakness can be found at CWE-199.

Match for cwe-189
CWE-92CWE

DEPRECATED: Improper Sanitization of Custom Special Characters

This entry has been deprecated. It originally came from PLOVER, which sometimes defined "other" and "miscellaneous" categories in order to satisfy exhaustiveness requirements for taxonomies. Within t…

Match for cwe-189
CWE-218CWE

DEPRECATED: Failure to provide confidentiality for stored data

This weakness has been deprecated because it was a duplicate of CWE-493. All content has been transferred to CWE-493.

Match for cwe-189
CWE-249CWE

DEPRECATED: Often Misused: Path Manipulation

This entry has been deprecated because of name confusion and an accidental combination of multiple weaknesses. Most of its content has been transferred to CWE-785.

Match for cwe-189
CVE-2025-23176CVE

CVE-2025-23176

CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

CVSS 8.8EPSS 0.5%
Match for cwe-189
CWE-423CWE

DEPRECATED: Proxied Trusted Channel

This entry has been deprecated because it was a duplicate of CWE-441. All content has been transferred to CWE-441.

Match for cwe-189
CVE-2026-8389CVE

CVE-2026-8389

JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 150.0.3.

CVSS 8.8EPSS 0.5%mozilla
Match for cwe-189
CWE-132CWE

DEPRECATED: Miscalculated Null Termination

This entry has been deprecated because it was a duplicate of CWE-170. All content has been transferred to CWE-170.

Match for cwe-189
CWE-545CWE

DEPRECATED: Use of Dynamic Class Loading

This weakness has been deprecated because it partially overlaps CWE-470, it describes legitimate programmer behavior, and other portions will need to be integrated into other entries.

Match for cwe-189
CVE-2026-8519CVE

CVE-2026-8519

Integer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: …

CVSS 8.8EPSS 0.2%
Match for cwe-189
CVE-2026-11198CVE

CVE-2026-11198

Insufficient validation of untrusted input in Codecs in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium secu…

CVSS 9.6EPSS 0.2%google
Match for cwe-189
CAPEC-679CAPEC

Exploitation of Improperly Configured or Implemented Memory Protections

Metadata: detailed CAPEC pattern, status draft, likelihood medium, severity very high. Underlying weaknesses: CWE-1222, CWE-1252, CWE-1257, CWE-1260, CWE-1274 (and 4 more). Related CAPEC patterns: [o…

Detailed
Match for cwe-189
CVE-2025-55058CVE

CVE-2025-55058

CWE-20 Improper Input Validation

CVSS 4.5EPSS 0.3%maxum
Match for cwe-189
CWE-769CWE

DEPRECATED: Uncontrolled File Descriptor Consumption

This entry has been deprecated because it was a duplicate of CWE-774. All content has been transferred to CWE-774.

Match for cwe-189
CWE-758CWE

Reliance on Undefined, Unspecified, or Implementation-Defined Behavior

The product uses an API function, data structure, or other entity in a way that relies on properties that are not always guaranteed to hold for that entity. This can lead to resultant weaknesses whe…

Match for cwe-189
Hybrid search: an exact-match keyword pass (title + MITRE-ID + body-head) fused with Vertex AI semantic similarity (text-embedding-005, cosine vector search over the corpus) via reciprocal-rank fusion — exact IDs stay pinned, related concepts surface by meaning. Curated by Adam Lundqvist, Founder at SQUR.