CWE-1069

Empty Exception Block
AI Translation Available

An invokable code block contains an exception handling block that does not contain any code, i.e. is empty.

Status
incomplete
Abstraction
variant

When an exception handling block (such as a Catch and Finally block) is used, but that block is empty, this can prevent the product from running reliably. If the relevant code is reachable by an attacker, then this reliability problem might introduce a vulnerability.

Common Consequences

other
Impacts
reduce reliability

Potential Mitigations

Phases:
implementation
Descriptions:
• For every exception block add code that handles the specific exception in the way intended by the application.