CWE-402

Transmission of Private Resources into a New Sphere ('Resource Leak')
AI Translation Available

The product makes resources available to untrusted parties when those resources are only intended to be accessed by the product.

Status
draft
Abstraction
class

Common Consequences

confidentiality
Impacts
read application data

Detection Methods

automated static analysis

Potential Mitigations