CWE-1173: Improper Use of Validation Framework
The product does not use, or incorrectly uses, an input validation framework that is provided by the source language or an independent library.
7 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2025-48490 — Laravel Rest Api has a Search Validation Bypass
- CVE-2024-58360 — stoatchat before 0.7.8 Unrestricted Account Creation
- CVE-2025-3940 — Improper Use of Validation Framework
- CVE-2026-33674 — PrestaShop: Improper Use of Validation Framework
Recently published
- CVE-2024-58360 — stoatchat before 0.7.8 Unrestricted Account Creation
- CVE-2026-33674 — PrestaShop: Improper Use of Validation Framework
- CVE-2025-48490 — Laravel Rest Api has a Search Validation Bypass
- CVE-2025-3940 — Improper Use of Validation Framework
More specific weaknesses
- CWE-105 — Struts: Form Field Without Validator
- CWE-106 — Struts: Plug-in Framework not in Use
- CWE-108 — Struts: Unvalidated Action Form
- CWE-109 — Struts: Validator Turned Off
- CWE-1174 — ASP.NET Misconfiguration: Improper Model Validation
- CWE-554 — ASP.NET Misconfiguration: Not Using Input Validation Framework