CWE-358

Improperly Implemented Security Check for Standard

Parent: CWE-573 - Improper Following of Specification by Caller

The product does not implement or incorrectly implements one or more security-relevant checks as specified by the design of a standardized algorithm, protocol, or technique.

106 vulnerabilities with CWE-358
CVE-2025-13333 MEDIUM
IBM WebSphere 9.0/8.5 - Auth Bypass
CVSS 4.4
CVE-2026-1486 HIGH
Keycloak - Privilege Escalation
CVSS 8.8
CVE-2025-66607 MEDIUM
FAST/TOOLS <10.04 - Open Redirect
CVSS 5.3
CVE-2025-66603 CRITICAL
FAST/TOOLS <10.04 - Info Disclosure
CVSS 9.8
CVE-2025-66601 MEDIUM
Yokogawa Electric Corporation FAST/TOOLS <10.04 - XSS
CVSS 6.1
CVE-2025-66600
FAST/TOOLS <10.04 - Info Disclosure
CVE-2025-69234 CRITICAL
Whale browser <4.35.351.12 - XSS
CVSS 9.1
CVE-2025-62002 MEDIUM
BullWall Ransomware Containment <4.6.1.4 - Authenticated RCE
CVSS 4.3
CVE-2025-66323 MEDIUM
Card Module - Info Disclosure
CVSS 5.3
CVE-2025-58308 HIGH
Call Module - Info Disclosure
CVSS 7.3
CVE-2025-62585 HIGH
Whale browser <4.33.325.17 - CSRF
CVSS 7.5
CVE-2025-62583 CRITICAL
Whale Browser <4.33.325.17 - XSS
CVSS 9.8
CVE-2025-25255 MEDIUM
Fortinet FortiOS <7.6.3 - Auth Bypass
CVSS 5.3
CVE-2025-31969 MEDIUM
Hcltech Unica < 25.1.0 - XSS
CVSS 4.0
CVE-2025-59147 HIGH
Suricata <7.0.11 & 8.0.0 - Detection Bypass
CVSS 7.5
CVE-2025-10457 MEDIUM
BLE - Info Disclosure
CVSS 4.3
CVE-2025-43262 MEDIUM
macOS Tahoe 26 - Info Disclosure
CVSS 5.1
CVE-2025-32086 HIGH
Intel Xeon 6 - Privilege Escalation
CVSS 7.2
CVE-2025-8204 LOW
Comodo Dragon <134.0.6998.179 - Info Disclosure
CVSS 3.1
CVE-2024-55599 MEDIUM
FortiOS <7.6.0 - Auth Bypass
CVSS 5.3
CVE-2025-49011 LOW
SpiceDB <1.44.2 - Info Disclosure
CVSS 3.7
CVE-2025-3069 HIGH
Google Chrome < 135.0.7049.52 - Privilege Escalation
CVSS 8.8
CVE-2021-26105 MEDIUM
Fortinet Fortisandbox < 3.1.4 - Buffer Overflow
CVSS 6.8
CVE-2020-9295 MEDIUM
FortiOS <6.2-6.4 - Code Injection
CVSS 4.7
CVE-2025-21267 MEDIUM
Microsoft Edge < - SSRF
CVSS 4.4
Details
Vulnerabilities 106